CVE-2026-20312

HIGH · CVSS 8.8 · EPSS 0.19% · CWE CWE-312

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20312 are related to Cleartext storage of sensitive information issues that are grouped under the Common Weakness Enumeration (CWE) CWE-312.

CVE-2026-20312 is confirmed by Cisco as affecting 2 products, including Cisco Catalyst SD-WAN Controller and Cisco Catalyst SD-WAN Manager, via 1 advisory (CVSS 8.8; EPSS 0.2%).

2 products with CSAF evidence