Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.1

CVE-2026-20310: Cisco SD-WAN Software: Improper Link Resolution Before File Access

CVE-2026-20310 CVE-2026-20310
Summary

Cisco SD-WAN software has a security issue that could allow an attacker to access sensitive files by manipulating links. This is a serious issue because it could lead to unauthorized access to sensitive information. To stay safe, update to the latest software version as soon as possible.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
cisco cisco catalyst sd-wan controller 20.6.4
cisco cisco catalyst sd-wan manager 20.1.12
Original title
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resul...
Original description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities.

The vulnerabilities tracked by CVE-2026-20310 are related to improper link resolution before file access issues that are grouped under the Common Weakness Enumeration (CWE) CWE-59.
mitre CVSS3.1 9.1
Vulnerability type
CWE-59 Link Following
Published: 5 Aug 2026 · Updated: 5 Aug 2026 · First seen: 5 Aug 2026