CVE-2026-20330

Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Improper Neutralization Vulnerabilities

Severity
Critical 9.9
CVSS 3.1
Exploited
Not listed
EPSS
0.003
27.1th percentile
Discovered by
Vendor
Vendor-published field
Published
Sep 16, 2026
Assigned by cisco

Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.   The vulnerabilities tracked by CVE-2026-20330 are related to improper neutralization issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-707.

Weakness: CWE-707

Affected products

Vendor Product Category Matched by
Cisco Cisco Adaptive Security Appliance (ASA) Firewall / NGFW cna-assigner
Cisco Cisco Secure Firewall Firewall / NGFW cna-assigner
Vendor-reported products (3)
  • Cisco · Cisco Secure Firewall Adaptive Security Appliance (ASA) Software
  • Cisco · Cisco Secure Firewall Management Center (FMC)
  • Cisco · Cisco Secure Firewall Threat Defense (FTD) Software

Something wrong here?