Cisco Advance Notification for Publication of September 16, 2026, Security Advisories
CISA KEV means this flaw has been seen exploited in real attacks — not predicted, observed. Treat it as urgent regardless of its score.
- On CISA KEV — actively exploited. Patch immediately.
On September 16, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the advisories that are listed in the following tables. To remediate these vulnerabilities, Cisco strongly recommends that customers upgrade to the fixed software that is indicated in the advisories. For more information about changes in Cisco PSIRT vulnerability disclosure, see Strengthening the Foundation: A Predictable, Customer-Focused Response to AI-Accelerated Vulnerability Discovery . …
- CVE-2026-20130nvd ↗
- CVE-2026-20192nvd ↗
- CVE-2026-20194nvd ↗
- CVE-2026-20234nvd ↗
- CVE-2026-20237nvd ↗
- CVE-2026-20287nvd ↗
- CVE-2026-76423nvd ↗
- CVE-2026-76425nvd ↗
- CVE-2026-76426nvd ↗
- CVE-2026-76427nvd ↗
- CVE-2026-76428nvd ↗
- CVE-2026-76424nvd ↗
- CVE-2026-76460nvd ↗KEV
- CVE-2026-20211nvd ↗
- CVE-2026-20176nvd ↗
- CVE-2026-20307nvd ↗
- CVE-2026-20282nvd ↗
- CVE-2026-20283nvd ↗
- CVE-2026-20284nvd ↗
- CVE-2026-20306nvd ↗
- CVE-2026-20305nvd ↗
- CVE-2026-20352nvd ↗
- CVE-2026-20247nvd ↗
- CVE-2026-20300nvd ↗
Get the next one first.
Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.