Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
Maximum-severity flaw in Identity Services Engine allows unauthenticated remote attackers to bypass authentication; Cisco confirms active exploitation.

Key Takeaways
- CVE-2026-76460 is a maximum-severity (CVSS 10.0) authentication bypass vulnerability in Cisco Identity Services Engine (ISE).
- The flaw is due to insufficient authentication controls on an API endpoint, allowing unauthenticated remote attackers to bypass authentication.
- Cisco has confirmed active exploitation in the wild; no patch is available yet.
Related Security News

Hackers exploit Citrix NetScaler zero-day to deploy web shells
Cybersecurity firms report that attackers are exploiting a zero-day vulnerability in Citrix NetScaler to deploy custom web shells and tunneling malware. The exploitation grants root access, enables credential theft, and facilitates lateral movement into internal networks. Citrix has released patches and security advisories addressing CVE-2026-88772.




