Cisco Zero-Day in Identity Services Engine API Earns Maximum CVSS Score
Cisco disclosed a zero-day authentication bypass vulnerability in its Identity Services Engine (ISE) API endpoints, tracked as CVE-2026-76460. The flaw carries a maximum CVSS score of 10.0, allowing unauthenticated attackers to bypass authentication controls and potentially access sensitive network policy data. Cisco has released security updates, and administrators are urged to apply patches immediately.

















