CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-20302

criticalCVSS 6.1covered by 3 sourcesfirst seen 2026-08-19
On August 19, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security Advisory CVE ID Security Impact Rating CVSS Base Score Cisco Crosswork Security Hardening Release: August 2026 CVE-2026-20030 CVE-2026-20357 CVE-2026-20358 CVE-2026-20359 Critical 10.0 Cisco Secure Workload Software Security Hardening Release: August 2026 CVE-2026-20231 CVE-2026-20315 CVE-2026-20317 CVE-2026-20318 CVE-2026-20319 Critical 10.0 Cisco BroadWorks Out-of-Band Blind XML External Entity Injection Vulnerability CVE-2026-20320 High 7.5 Cisco Unified Intelligence Center SQL Injection Vulnerability CVE-2026-20327 Medium 6.5 Cisco RoomOS Stack Overflow Vulnerability CVE-2026-20302 Medium 6.1 Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability CVE-2026-20232 Medium 5.4 Cisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability CVE-2026-20177 Medium 5.3 Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Server-Side Request Forgery Vulnerability CVE-2026-20314 Medium 5.0 To fully remediate the vulnerabilities that were disclosed on August 19, 2026, Cisco strongly recommends that customers upgrade to the fixed software that is indicated in the advisories. For more information about changes in Cisco PSIRT vulnerability disclosure, see Strengthening the Foundation: A Predictable, Customer-Focused Response to AI-Accelerated Vulnerability Discovery . Security Impact Rating: Informational

CSIRTS triage

Other
What
Cisco PSIRT advance notification of upcoming security advisories for multiple product lines.
Who is affected
Organizations using Cisco BroadWorks, Industrial Ethernet switches, Contact Center, RoomOS, Secure Firewall, Secure Workload, and Unified Intelligence Center products.
Urgency
Medium urgency as an advance notice; detailed remediation urgency will depend on the severity of individual advisories published August 19, 2026.
Action
Monitor Cisco PSIRT advisories published August 19, 2026 and plan upgrades to fixed software versions.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-20302

Get an email if CVE-2026-20302 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (3)

External references

NVD record for CVE-2026-20302

CVE.org record

Embed the live status

CVE-2026-20302 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-20302 status](https://www.csirts.com/badge/CVE-2026-20302)](https://www.csirts.com/cve/CVE-2026-20302)