Skip to content
archivevulnerability · 03 Sep 2026 · 15:52 UTC

Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability

VULNCVE-2026-20212source · THN
HIGHCritical vulnerability — CVSS 9.8
What to do
  • Critical severity — schedule an urgent patch.

last 60 dispatches · spectrum

A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute code with root privileges. This vulnerability exists because TCP ports 43210 and 43211 are accessible in the default Layer 3 (L3) virtual routing and forwarding (VRF). A successful exploit could allow the attacker to connect to an affected device and send crafted input that could be executed as code with root privileges. The exploitation of this vulnerability could also cause the S1HAL process to crash, which could cause the device to reload. …

CVE · detail
grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected