Find notable cyber news and cases, enriched with sources, timelines, and signals.

Cisco security patch release for CVE-2026-20184

Security Patch Release
First reported
Last updated
Happening score
H score 44
1 unique sources, 1 articles

Summary

Hide ▲

Cisco released patches for four critical flaws affecting Identity Services Engine (ISE), ISE-PIC, and Webex Services, closing paths to arbitrary code execution and user impersonation. The bulletin covers CVE-2026-20184, CVE-2026-20147, CVE-2026-20180, and CVE-2026-20186, including bugs that can be triggered with crafted HTTP requests or an SSO certificate issue. CVE-2026-20184 is cloud-based and requires SSO customers to upload a new IdP SAML certificate to Control Hub, while the ISE fixes are available in specific patched releases. Cisco said it is not aware of exploitation in the wild.

Related Happenings

SAP NetWeaver Application Server ABAP SICF workaround for CVE-2026-44747

Advisory/Mitigation
H score40 First: 14.07.2026 21:17 Last: 14.07.2026 21:17 Sources 1

About this happening: SAP NetWeaver Application Server ABAP customers now have a temporary workaround for CVE-2026-44747 that can reduce exposure to memory corruption. The mitigation disabl...

SAP security patch release for CVE-2026-44747

Security Patch Release
H score40 First: 14.07.2026 21:17 Last: 14.07.2026 21:17 Sources 1

About this happening: SAP's July 2026 security updates now cover multiple vulnerabilities, including a critical SAP NetWeaver Application Server ABAP flaw. The bundle includes CVE-2026-44...

Cisco security patch release for CVE-2026-20245

Security Patch Release
H score38 First: 25.06.2026 00:29 Last: 25.06.2026 00:29 Sources 1

About this happening: Cisco released security updates for Cisco Catalyst SD-WAN after CVE-2026-20245 was linked to root-level command execution, and customers were told to move to fixed sof...

Palo Alto Networks GlobalProtect log search guidance for CVE-2026-0257

Advisory/Mitigation
H score35 First: 15.06.2026 09:17 Last: 15.06.2026 09:17 Sources 1

About this happening: Palo Alto Networks is urging GlobalProtect customers to search logs for successful gateway-connected events tied to CVE-2026-0257, a step that can expose possible unau...

Check Point VPN CVE-2026-50751 targeted exploitation wave

Exploitation Wave
H score47 First: 08.06.2026 17:17 Last: 08.06.2026 17:17 Sources 1

About this happening: CVE-2026-50751 is an active exploitation wave against Check Point Remote Access VPN and Mobile Access deployments that use deprecated IKEv1. The flaw is an a...

Timeline

  1. 16.04.2026 14:27 2 articles · 3mo ago

    Cisco releases patches for critical ISE and Webex Services flaws

    Mitigation Patch Update

    Cisco released patches for four critical vulnerabilities in Identity Services Engine (ISE), ISE-PIC, and Webex Services: CVE-2026-20184, CVE-2026-20147, CVE-2026-20180, and CVE-2026-20186. The flaws could let a remote attacker impersonate users, execute arbitrary code or commands, and in single-node ISE deployments cause the affected node to become unavailable, creating a DoS condition. CVE-2026-20184 is cloud-based and requires no customer action, while SSO customers should upload a new IdP SAML certificate to Control Hub and ISE customers should move to the fixed releases; Cisco said it is not aware of exploitation in the wild.

    Show sources