CVE-2026-76504: Cisco SD-WAN Flaw Exploited Cisco has disclosed CVE-2026-76504, a critical authentication bypass vulnerability in Catalyst SD-WAN Manager, formerly known as vManage. The flaw allows an unauthenticated remote attacker to access the management API with administrator privileges. Cisco confirmed active exploitation in September 2026 and assigned the vulnerability a CVSS 3.1 score of 9.8 (Critical).

Read the full article at SOCRadar →