Vulnerabilities & Exploits · Web App Attack

CISA Orders Emergency Patches for SolarWinds, Ivanti, Workspace One

CISA added three vulnerabilities affecting SolarWinds Web Help Desk, Ivanti Endpoint Manager, and Workspace One UEM to its Known Exploited Vulnerabilities catalog. Federal civilian agencies must patch the SolarWinds flaw within one week and the Ivanti and Workspace One flaws within two weeks after evidence of active exploitation.

6 sources · Mar 12

CVE-2026-20127

NVD KEV

Known exploited · CISA KEV

CVSS 10 CRITICAL: a vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco… EPSS 88% (100th percentile).

CISA federal remediation date Feb 27 · date passed

CVE-2022-20775

NVD KEV

Known exploited · CISA KEV

CVSS 7.8 HIGH: a vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated… EPSS 12% (96th percentile), up from 0.4%.

CISA federal remediation date Feb 27 · date passed

Timeline

Sources

Vendor digest: Cisco

Part of the PlainSec briefing for 2026-03-13

Every edition of this story: CISA Orders Emergency Patches for SolarWinds, Ivanti, Workspace One

More from today