CVE
CVE-2026-76504
- First Reported
- Sep 30, 2026
- Latest Reported
- Oct 7, 2026
Reported Context (3)
- Cisco confirms exploitation of CVE-2026-76504, which lets unauthenticated attackers reach administrative SD-WAN Manager APIs through crafted requests. Pwn2Own Researchers Exploit Codex and LiteLLM as LLM Safety Checks Are Bypassed
- On September 30, 2026, Cisco published a security advisory for CVE-2026-76504, a critical API authentication bypass vulnerability affecting Cisco Catalyst SD-WAN Manager. The vulnerability has a CVSSv3.1 score of 9.8 Critical Cisco SD-WAN Manager Authentication Bypass Actively Exploited
- CVE-2026-76504 Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability CISA Adds Actively Exploited Cisco SD-WAN Manager Vulnerability to KEV Catalog
CVE (5)
People (3)
Vendors (12)
Products (20)
Industries (1)
Countries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.