AL26-018 - Vulnerability affecting Cisco ASA and Secure Firewall Threat Defense Software Remote Access SSL VPN - CVE-2026-20349
ID: d4483ca0-d832-5b86-992f-8f2b8c1990f5
STIX ID: report--d4483ca0-d832-5b86-992f-8f2b8c1990f5
Feed Name: Canadian Centre for Cyber Security Alerts and Advisories
The Canadian Centre for Cyber Security warns of active exploitation of CVE-2026-20349, a high-severity heap-inspection vulnerability in Cisco Secure Firewall ASA and FTD SSL VPN services that can cause remote unauthenticated denial-of-service (unexpected firewall reloads). The alert lists affected versions and fixed releases/hotfixes, urges identification of internet-facing SSL VPN services, review of logs for reloads or suspicious HTTP requests, and prioritization of patching and mitigation measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
