logo

AL26-018 - Vulnerability affecting Cisco ASA and Secure Firewall Threat Defense Software Remote Access SSL VPN - CVE-2026-20349

ID: d4483ca0-d832-5b86-992f-8f2b8c1990f5

STIX ID: report--d4483ca0-d832-5b86-992f-8f2b8c1990f5

Feed Name: Canadian Centre for Cyber Security Alerts and Advisories

Threat Score
70/100

Date Published: 2026-08-13

Date Updated: 2026-08-13

Author: Canadian Centre for Cyber Security

...
...

The Canadian Centre for Cyber Security warns of active exploitation of CVE-2026-20349, a high-severity heap-inspection vulnerability in Cisco Secure Firewall ASA and FTD SSL VPN services that can cause remote unauthenticated denial-of-service (unexpected firewall reloads). The alert lists affected versions and fixed releases/hotfixes, urges identification of internet-facing SSL VPN services, review of logs for reloads or suspicious HTTP requests, and prioritization of patching and mitigation measures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.