CVE-2026-20312Disclosure

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20312 are related to Cleartext storage of sensitive information issues that are grouped under the Common Weakness Enumeration (CWE) CWE-312.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-312

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-08-05); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-08-05: 1Mentions · 2026-08-13: 1Patch / Workaround · 2026-08-13: 1Technical Details · 2026-08-13: 108-0508-13
Signal classification2 categories
Disclosure
150.0%
Patch
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-08-051
Disclosure1
2026-08-131
Patch1
Full discourse2 posts
  • iototsecnews@iototsecnews
    Patch

    Cisco Catalyst SD-WAN の複数の深刻な脆弱性が FIX:不適切な入力検証やアクセス・コントロール https://iototsecnews.jp/2026/08/06/cisco-patched-multiple-critical-vulnerabilities-in-catalyst-sd-wan-update-now/ Cisco Catalyst SD-WAN Software において、入力検証の不備やアクセス制御の問題などに起因する複数の深刻な脆弱性が発見されました。対象となる CVE は CVE-2026-20303/CVE-2026-20304/CVE-2026-20310 (CVSS:9.9)、CVE-2026-20312 (CVSS:8.8)、CVE-2026-20313 (CVSS:7.7) です。これらを悪用されると、機密情報の露出や不正なファイルアクセスなど、システム全体へ甚大な被害が及ぶ恐れがあります。回避策となる設定変更が存在しないため、修正済みバージョンへのアップデートが必要です。運用環境の更新状況を確認し、迅速に対応を進めてください 。 #CatalystSDWAN #Cisco #CVE202620303 #CVE202620304 #CVE202620310 #CVE202620312 #CVE202620313 #Vulnerability

    Post summary

    The announcement details multiple critical vulnerabilities (CVE‑2026‑20303, ‑20304, ‑20310, ‑20312, ‑20313) in Cisco Catalyst SD‑WAN, provides CVSS scores, and stresses that there is no workaround other than updating to a patched version.

    01001182
    507 followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-20312 As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering … CVSS 8.8 Full analysis → https://sec.kaitan.id/cves/CVE-2026-20312 #Cisco #CyberSecurity #InfoSec

    Post summary

    The post announces the high‑severity CVE‑2026‑20312 with a CVSS score of 8.8 and provides a link to a full analysis, offering no PoC, exploit details, or remediation steps.

    0000050
    88 followersView on X

Explore more