Critical severity9.9NVD Advisory· Published Aug 5, 2026· Updated Aug 14, 2026
CVE-2026-20304
CVE-2026-20304
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that address multiple internally discovered vulnerabilities.
The vulnerabilities tracked by CVE-2026-20304 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
4- ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router BackdoorsThe Hacker News · Aug 10, 2026
- Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score BugsThe Hacker News · Aug 6, 2026
- Cisco Patches Critical SD-WAN, IOS XE, FMC VulnerabilitiesSecurityWeek · Aug 6, 2026
- Cisco Patched Multiple Critical Vulnerabilities in Catalyst SD-WAN – Update NowCyber Security News · Aug 6, 2026