Cybersecurity DEVELOPING
Cisco warns of new SD-WAN zero-day exploited in attacks
First reported Source: BleepingComputerLast editorial activity

What happened
Cisco released security updates to address a critical zero-day (a flaw already being used in attacks before a fix exists) in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504 (the public catalogue number for a specific software flaw)) that attackers are actively exploiting to escalate to admin privileges.
Key facts
- Cisco — released: security updates to address a critical zero-day in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504) that attackers are actively exploiting to escalate to admin privileges
Sources & evidence
- BleepingComputer Reporting source
Cisco warns of new SD-WAN zero-day exploited in attacks ↗
https://www.bleepingcomputer.com/news/security/cisco-warns-of-new-sd-wan-authentication-bypass-zero-day-exploited-in-attacks/