This is the second time this year a threat actor has leveraged a CVSS 10.0 vulnerability in Cisco's network control system.

CVE-2026-20182 bypasses Cisco SD-WAN auth via DTLS port 12346, enabling admin access after May 2026 exploitation.

Cisco is warning that a critical Catalyst SD-WAN Controller authentication bypass flaw, tracked as CVE-2026-20182, was actively exploited in zero-day attacks that allowed…

This is the second time this year a threat actor has leveraged a CVSS 10.0 vulnerability in Cisco's network control system.

CISA added CVE-2026-20182, a CVSS 10.0 Cisco Catalyst SD-WAN Controller authentication bypass flaw, to its KEV catalog.