logo

Cisco fixed maximum severity flaw CVE-2026-20223 in Secure Workload

ID: cba7cf46-33ee-53b2-9047-ae10ade7cc8a

STIX ID: report--cba7cf46-33ee-53b2-9047-ae10ade7cc8a

Feed Name: Security Affairs

Threat Score
78/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

Author: Pierluigi Paganini

...
...

Cisco patched CVE-2026-20223, a critical (CVSS 10.0) vulnerability in Secure Workload’s internal REST APIs that could allow unauthenticated remote attackers to gain Site Admin privileges and perform cross-tenant configuration and data access; fixes are provided in versions 3.10.8.3 and 4.0.3.17, and Cisco PSIRT reports no active exploitation so far.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.