#SecureWorkload
August 21, 2026 at 10:20 AM
Cisco released patches for 15 flaws in Crosswork, Secure Workload and BroadWorks, including critical issues that could allow RCE, auth bypass, and file access. No known exploitation. #Cisco #Crosswork #SecureWorkload
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
Cisco released patches for 15 vulnerabilities across Crosswork, Secure Workload, BroadWorks, and other products, including several critical flaws that could enable remote code execution, authentication bypass, and sensitive file access. Cisco said it is not aware of any of the issues being exploited in the wild, and fixes are now available...
www.hendryadrian.com
August 20, 2026 at 1:30 PM
Cisco patched CVE-2026-20223, a CVSS 10.0 Secure Workload REST API flaw that could let unauthenticated attackers access sensitive data and change tenant configurations. #Cisco #SecureWorkload #CVE202620223
Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access
Cisco has released fixes for CVE-2026-20223, a maximum-severity flaw in Secure Workload that could let an unauthenticated remote attacker access sensitive data and alter configurations across tenant boundaries. The disclosure follows Cisco’s report of another critical authentication bypass in Catalyst SD-WAN Controller, which was exploited by UAT-8616. #CiscoSecureWorkload #CVE-2026-20223 #CatalystSDWANController #CVE-2026-20182...
www.hendryadrian.com
May 22, 2026 at 6:45 AM
Cisco patched CVE-2026-20223, a critical 10.0 flaw in Secure Workload that could let attackers gain Site Admin privileges via crafted REST API requests. Also fixed 3 medium bugs in ThousandEyes and Nexus switches. #Cisco #SecureWorkload #Nexus9016
Cisco Patches Critical Vulnerability in Secure Workload
Cisco released fixes for a critical flaw in Secure Workload, tracked as CVE-2026-20223, that could let attackers gain Site Admin privileges and access or alter tenant resources through crafted REST API requests. The company also patched three medium-severity bugs in ThousandEyes and Nexus switches that could enable remote command execution or...
www.hendryadrian.com
May 21, 2026 at 4:30 PM
Cisco fixed CVE-2026-20223, a max-severity Secure Workload flaw that could let unauthenticated attackers gain Site Admin rights via crafted REST API requests and expose sensitive data across tenant boundaries. #Cisco #SecureWorkload #PSIRT
Max severity Cisco Secure Workload flaw gives Site Admin privileges
Cisco has released fixes for CVE-2026-20223, a maximum-severity Secure Workload flaw that could let unauthenticated attackers obtain Site Admin privileges through crafted REST API requests. The issue can expose sensitive data and allow configuration changes across tenant boundaries, while Cisco says no workarounds exist and there is no evidence of in-the-wild exploitation so far. #CiscoSecureWorkload #CVE-2026-20223 #Cisco #PSIRT
www.hendryadrian.com
May 21, 2026 at 3:15 PM