Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
10.0

CVE-2026-20358: Cisco Crosswork: File System Control Weakness Fixed

CVE-2026-20358 · published 15 days ago
Summary

Cisco Crosswork has released a security update to fix internal weaknesses in its file system control. This update addresses potential security risks that could allow unauthorized access to the system. We recommend that users apply the latest security update to ensure the integrity and security of their system.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
cisco cisco crosswork planning 7.0.2
Original advisory text
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in...
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.

The vulnerabilities tracked by CVE-2026-20358 are related to external control of the file system issues that are grouped Common Weakness Enumeration (CWE) CWE-73.
Severity
10.0 Critical
CVSS 3.1: 10.0 (MITRE)
Exploitation
EPSS <1%
Type
CWE-73External Control of File Name or Path
Timeline
Published19 Aug 2026
Updated3 Sep 2026
First seen19 Aug 2026
Sources
CVE-2026-20358 · MITRE
Monitor software like this
Free during beta