# Cisco patches dozens of flaws across product line

Published: 2026-10-08 · Severity: routine · Sectors: technology, telecommunications
Canonical: https://vorant.io/reports/e7368fa8-3003-59ce-8fad-5e609cbf3257/cisco-patches-dozens-of-flaws-across-product-line

> CERT-FR advisory details multiple Cisco vulnerabilities enabling RCE, privilege escalation, SSRF, SQLi and DoS across APIC, Meraki, NX-OS, UCS and other products.

CERT-FR has published a consolidated advisory covering numerous vulnerabilities discovered across a wide range of Cisco products, including APIC, Finesse, License On-Prem, Meraki (Campus Gateway, Cellular Gateway, Wireless AP, Switch, Smart Camera, Security/SD-WAN appliances), NX-OS, Packaged/Unified CCE, UCS, and Unified CCX. The vulnerabilities span multiple impact categories: remote code execution, privilege escalation, remote denial of service, confidentiality breaches, security policy bypass, SSRF, and SQL injection. No indication is given in this advisory that any of these flaws are being actively exploited in the wild.

Affected version ranges are extensive and product-specific, with some fixes already available and others scheduled for release as late as October 2026 through February 2027, meaning some systems will remain unpatched for an extended window. Defenders running any of the listed Cisco product lines should consult the referenced Cisco Security Advisories to identify exact affected versions and apply patches as they become available, prioritizing remote code execution and privilege escalation issues on internet-facing or management-plane systems such as APIC, NX-OS, and Meraki infrastructure.

Given the breadth of the advisory (29+ CVEs across nine separate Cisco bulletins) and no confirmed active exploitation, this is treated as a routine vendor patch cycle requiring prompt but non-emergency remediation. Organizations should track the delayed-availability patches closely and apply interim mitigations or hardening guidance from Cisco where fixes are not yet released.

## Mentioned in this report

- Vulnerabilities: CVE-2026-20328, CVE-2026-20362, CVE-2026-76437, CVE-2026-76452, CVE-2026-76453, CVE-2026-76454, CVE-2026-76455, CVE-2026-76456, CVE-2026-76457, CVE-2026-76458, CVE-2026-76459, CVE-2026-76463, CVE-2026-76464, CVE-2026-76465, CVE-2026-76467, CVE-2026-76468, CVE-2026-76469, CVE-2026-76470, CVE-2026-76471, CVE-2026-76472, CVE-2026-76480, CVE-2026-76482, CVE-2026-76483, CVE-2026-76484, CVE-2026-76485, CVE-2026-76486, CVE-2026-76498, CVE-2026-76499, CVE-2026-76500, CVE-2026-76501

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1282

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/e7368fa8-3003-59ce-8fad-5e609cbf3257/cisco-patches-dozens-of-flaws-across-product-line.
In the app the same report carries its extracted indicators, its detections with Splunk SPL and Microsoft KQL already written, live profiles of the actors and CVEs it names, and the vendor research on the same campaign. Slack alerts fire on the vendors, sectors and countries a reader follows. A new account starts with three days of all of it, no card: https://vorant.io/signup
