AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-20268

HIGH · CVSS 8.6 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Cisco IOS XE Software is vulnerable due to improper restrictions on operations within memory buffer bounds, which could lead to potential exploitation. The high severity of this issue (CVSS 8.6) indicates that it may allow an attacker to execute arbitrary code or cause a denial of service. Organizations using Cisco IOS XE should prioritize patching to mitigate the risks associated with this vulnerability.

CVE
CVE-2026-20268
Severity
HIGH
CVSS
8.6
EPSS
0.25%
Cisco

Original NVD Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20268 are related to issues with improper restriction of operations within the bounds of a memory buffer that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-119.

Related CVEs

Other vulnerabilities affecting the same vendor(s)