Cisco Talos is tracking the active exploitation of CVE-2026-20182, an authentication bypass vulnerability in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage.
First seen on blog.talosintelligence.com
Jump to article: blog.talosintelligence.com/sd-wan-ongoing-exploitation/
![]()

