CVE-2026-20317

Published Aug 19, 2026

Last updated an hour ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2026-20317 is a vulnerability affecting Cisco Secure Workload Software, encompassing both Software as a Service (SaaS) and on-premises deployments. This flaw is categorized as an authentication bypass and privilege escalation vulnerability. It was identified during an internal security review by the Cisco Secure Workload engineering team. Cisco has released software updates to address CVE-2026-20317, along with other related vulnerabilities. There are no known workarounds for this issue, and it is not currently known to be actively exploited in the wild.

Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20317 are related to improper authentication issues that are grouped under the Common Weakness Enumeration (CWE) CWE-287.
Source
psirt@cisco.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
10
Impact score
5.8
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H
Severity
CRITICAL

Weaknesses

psirt@cisco.com
CWE-287

Social media

Hype score
Not currently trending