CVE-2026-76500
Cisco Application Policy Infrastructure Controller Hardening Release: October 2026 - Improper Control of a Resource Through its Lifetime Vulnerabilities
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76500 are related to issues with improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.
Weakness: CWE-664
Affected products
| Vendor | Product | Category | Matched by |
|---|---|---|---|
| Cisco | Cisco Application Policy Infrastructure Controller (APIC) | Network & Security Management | cna-assigner |
Vendor-reported products (1)
- Cisco · Cisco Application Policy Infrastructure Controller (APIC)
Vendor advisory
cisco-sa-hardening-apic-UOXWtfh
Cisco Application Policy Infrastructure Controller Security Hardening Release: October 2026
Cisco’s rating: Critical (advisory CVSS 9.8) · Published Oct 7, 2026
The vendor’s rating applies to the whole advisory and can differ from this CVE’s own CVSS severity. Where this comes from