Cisco catalyst sd-wan manager
This hub aggregates every CVE we track for Cisco catalyst sd-wan manager, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
39
CVEs tracked
3
Critical
10
High
8
In CISA KEV
Severity distribution
MEDIUM26HIGH10CRITICAL3
Monthly trend
0
0
1
0
18
0
0
0
0
0
6
0
0
0
0
0
0
0
0
6
1
0
4
2
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Cisco catalyst sd-wan manager.
- CVE-2026-20262Cisco Catalyst SD-WAN Manager Arbitrary File Write VulnerabilityKEV6.5
- CVE-2026-20245Cisco Catalyst SD-WAN Controller Authenticated Privilege Escalation VulnerabilityKEV7.8
- CVE-2026-20224Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability8.6
- CVE-2026-20210Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability5.4
- CVE-2026-20209Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability5.4
- CVE-2026-20182Cisco Catalyst SD-WAN Controller Authentication Bypass VulnerabilityKEV10.0
- CVE-2026-20108A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of...5.4
- CVE-2026-20122Cisco Catalyst SD-WAN Manager Arbitrary File Overwrite VulnerabilityKEV5.4
- CVE-2026-20127Cisco Catalyst SD-WAN Controller Authentication Bypass VulnerabilityKEV10.0
- CVE-2026-20128Cisco Catalyst SD-WAN Manager Information Disclosure VulnerabilityKEV7.5
- CVE-2026-20129Cisco Catayst SD-WAN Authentication Bypass Vulnerability9.8
- CVE-2026-20126Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability8.8
- CVE-2026-20133A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. This vulnerability is due to insufficient f...KEV6.5
- CVE-2025-20147Cisco SD-WAN vManage Stored Cross-Site Scripting Vulnerability5.4
- CVE-2025-20216Cisco Catalyst SD-WAN Manager Reflected HTML Injection Vulnerability4.7
Product normalization is registry-driven with AI assist and human review. How it works