Home / May 17, 2026 / Story
0
#2 SecurityWeek general May 15, 2026 at 06:28 UTC

Cisco Patches Another SD-WAN Zero-Day, the Sixth Exploited in 2026

By Eduard Kovacs

AI Summary

Cisco patched CVE-2026-20182, a sixth SD-WAN zero-day exploited in 2026, attributed to sophisticated threat actor UAT-8616. CISA added the critical authentication bypass flaw to its Known Exploited Vulnerabilities catalog and mandated Federal Civilian Executive Branch agencies remediate by May 17, 2026. The repeated exploitation of Cisco SD-WAN infrastructure by this actor signals a sustained, targeted campaign against network edge devices.

Relevance score: 87.0/100

# More from May 17