Cisco Advises Urgent Patching of Critical Authentication Bypass in SD-WAN Manager
CVE-2026-76504 allows unauthenticated admin API access

Key Takeaways
- Cisco Catalyst SD-WAN Manager is affected by a critical authentication bypass vulnerability (CVE-2026-76504).
- Active exploitation has been confirmed; attackers can gain admin-level API access without authentication.
- No workaround is available; users must upgrade to fixed releases.
- The advisory was published on September 30, 2026.
Related Security News

CISA Adds Critical Pre-Auth RCE Vulnerability in MikroTik RouterOS to KEV Catalog
CISA has added a critical pre-authentication remote code execution vulnerability in MikroTik RouterOS to its Known Exploited Vulnerabilities catalog, mandating patching for U.S. federal civilian executive branch agencies. The flaw allows remote attackers to execute arbitrary code or cause denial-of-service without authentication. MikroTik has released patched versions 7.12.3 and 7.13.1rc to address the vulnerability.


