CVE-2026-20310
Cisco SD-WAN Software Security Hardening Release - Improper Link Resolution Before File Access
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20310 are related to improper link resolution before file access issues that are grouped under the Common Weakness Enumeration (CWE) CWE-59.
Weakness: CWE-59
Affected products
| Vendor | Product | Category | Matched by |
|---|---|---|---|
| Cisco | Cisco Catalyst SD-WAN Manager | Network & Security Management | cna-assigner |
Vendor-reported products (2)
- Cisco · Cisco Catalyst SD-WAN Controller
- Cisco · Cisco Catalyst SD-WAN Manager
Vendor advisory
cisco-sa-hardening-sdwan-faLcR3K
Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026
Cisco’s rating: Critical (advisory CVSS 9.9) · Published Aug 5, 2026
The vendor’s rating applies to the whole advisory and can differ from this CVE’s own CVSS severity. Where this comes from