Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-76460

CRITICAL Actively Exploited NVDCISA KEV
CVSS Score 10
Severity CRITICAL
Published Sep 16, 2026
Vendor unknown
This vulnerability is in the CISA Known Exploited Vulnerabilities Catalog. Active exploitation has been observed. Immediate patching is recommended.

Description

A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass authentication. This vulnerability is due to insufficient authentication control on an API endpoint. An attacker could exploit this vulnerability by sending a crafted request to an affected API endpoint. A successful exploit could allow the attacker to gain unauthorized access to the affected device by bypassing the web-based management interface.

References