CVE-2026-20315

Published Aug 19, 2026

Last updated a month ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2026-20315 is a vulnerability affecting Cisco Secure Workload, identified as an improper access control issue. This flaw falls under the Common Weakness Enumeration (CWE) category CWE-284, which pertains to insufficient authorization. Cisco's engineering team conducted an internal security review that led to the discovery of this and other related vulnerabilities. As a result, Cisco released hardening updates for Secure Workload on August 19, 2026, to address these internally discovered issues.

Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20315 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.
Source
psirt@cisco.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
10
Impact score
6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

psirt@cisco.com
CWE-284

Social media

Hype score
Not currently trending
  1. 🔐 Cisco Secure Workload hit with a CVSS 10 improper access control flaw. CVE-2026-20315 is network-exploitable, no auth, no user interaction — full C/I/A impact. Patch now. #cisco #cybersecurity #ciso #cto #vulnerabilities #msp #mssp https://t.co/J0o1NNPB22 https://t.co/6z7

    @SecAlertsCo

    23 Aug 2026

    127 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🛡️ ExploitGrid Daily Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-20030 CVE-2026-20315 CVE-2026-20317 CVE-2026-20357 CVE-2026-20358 ..🧵👇

    @exploitgrid

    20 Aug 2026

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  3. Cisco Secure Workloadに複数の重大(Critical)な脆弱性。CVE-2026-20315とCVE-2026-20317はCVSSスコア10で、前者が不適切なアクセス制御、後者が認証不備。CVE-2026-20231は同9.9のOSコマンドインジェクション。CVE-2026-20318は同9.6の

    @__kokumoto

    20 Aug 2026

    1568 Impressions

    2 Retweets

    0 Likes

    1 Bookmark

    0 Replies

    1 Quote

  4. 🚨 CRITICAL: Cisco has patched two CVSS 10.0 vulnerabilities in Cisco Secure Workload. CVE-2026-20315 — improper access control CVE-2026-20317 — improper authentication / authentication bypass Both flaws carry the highest possible CVSS severity and could allow attackers t

    @ThreatWire_

    20 Aug 2026

    1874 Impressions

    5 Retweets

    16 Likes

    5 Bookmarks

    0 Replies

    0 Quotes

  5. Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now. #Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow https://t.co/BOkldB0lBd

    @Daily_CyberSec

    20 Aug 2026

    417 Impressions

    3 Retweets

    5 Likes

    1 Bookmark

    0 Replies

    0 Quotes