Cisco vulnerabilities under active exploitation
11 CVEs on this page carry evidence of exploitation.
Which Cisco vulnerabilities are being exploited?
10 of them are in the CISA KEV catalog.
2 were added to KEV in the last 90 days.
- CVE-2026-20349 In KEV since 2026-08-11 · No fix identified here
- CVE-2008-4128 In KEV since 2026-07-13 · EPSS 34% · No fix identified here
- CVE-2026-20182 In KEV since 2026-05-14 · No fix identified here
- CVE-2026-33634 In KEV since 2026-03-26 · No fix identified here
- CVE-2026-20127 In KEV since 2026-02-25 · EPSS 88% · Fix identified
- CVE-2022-20775 In KEV since 2026-02-25 · EPSS 12% · Fix identified
- CVE-2024-36401 In KEV since 2024-07-15 · EPSS 99.8% · No fix identified here
- CVE-2023-32315 In KEV since 2023-08-24 · EPSS 100.0% · No fix identified here
- CVE-2021-26855 In KEV since 2021-11-03 · EPSS 100.0% · Used in ransomware · No fix identified here
- CVE-2018-0171 In KEV since 2021-11-03 · EPSS 99% · No fix identified here
- CVE-2026-22200 EPSS 74% · No fix identified here
Which of them have a fix?
We can name a fix for 2 of them.
For the rest we hold no patch identifier, which is not the same as no patch existing.
What PlainSec published about Cisco
Which Cisco products this page tracks
- Cisco
- Cisco ASA
- Cisco Catalyst SD-WAN
- Cisco Catalyst SD-WAN Controller
- Cisco Duo
- Cisco IOS
- Cisco IOS XE
- Cisco IOS XR
- Cisco ISE
- Cisco Identity Services Engine
- Cisco Meraki
- Cisco Secure Firewall Adaptive Security Appliance (ASA) Software
- Cisco Umbrella
- Cisco Webex
- Duo Security
- Meraki
KEV and EPSS are re-checked daily. Page last updated 2026-09-29.