CVE-2026-20276High· 8.6▾ TwilightAs part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 9.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.3%
0.3% → 0.3%
Last analysed / modified upstream
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities.
The vulnerabilities tracked by CVE-2026-20276 are related to insufficient control flow management issues that are grouped under the Common Weakness Enumeration (CWE) CWE-691.
ios_xr = 6.5.25ios_xr = 6.5.26ios_xr = 6.5.28ios_xr = 6.5.29ios_xr = 6.5.31ios_xr = 6.5.32ios_xr = 6.5.33ios_xr = 6.5.35ios_xr = 6.5.90ios_xr = 6.5.351ios_xr = 6.5.352ios_xr = 6.5.353ios_xr = 6.7.1ios_xr = 6.7.2ios_xr = 6.7.3ios_xr = 6.7.4ios_xr = 6.7.35ios_xr = 6.8.1ios_xr = 6.8.2ios_xr = 6.9.1ios_xr = 6.9.2ios_xr = 7.0.0ios_xr = 7.0.1ios_xr = 7.0.2ios_xr = 7.0.11ios_xr = 7.0.12ios_xr = 7.0.14ios_xr = 7.0.90ios_xr = 7.1.1ios_xr = 7.1.2ios_xr = 7.1.3ios_xr = 7.1.15ios_xr = 7.1.25ios_xr = 7.2.0ios_xr = 7.2.1ios_xr = 7.2.2ios_xr = 7.2.12ios_xr = 7.3.1ios_xr = 7.3.2ios_xr = 7.3.3ios_xr = 7.3.4ios_xr = 7.3.5ios_xr = 7.3.6ios_xr = 7.3.15ios_xr = 7.3.16ios_xr = 7.3.27ios_xr = 7.4.1ios_xr = 7.4.2ios_xr = 7.4.15ios_xr = 7.4.16ios_xr = 7.5.1ios_xr = 7.5.2ios_xr = 7.5.3ios_xr = 7.5.4ios_xr = 7.5.5ios_xr = 7.5.12ios_xr = 7.5.52ios_xr = 7.6.1ios_xr = 7.6.2ios_xr = 7.6.3ios_xr = 7.6.15ios_xr = 7.7.1ios_xr = 7.7.2ios_xr = 7.7.21ios_xr = 7.8.1ios_xr = 7.8.2ios_xr = 7.8.12ios_xr = 7.8.22ios_xr = 7.8.23ios_xr = 7.9.1ios_xr = 7.9.2ios_xr = 7.9.21ios_xr = 7.10.1ios_xr = 7.10.2ios_xr = 7.11.1ios_xr = 7.11.2ios_xr = 7.11.21ios_xr = 24.1.1ios_xr = 24.1.2ios_xr = 24.2.1ios_xr = 24.2.2ios_xr = 24.2.11ios_xr = 24.2.20ios_xr = 24.2.21ios_xr = 24.3.1ios_xr = 24.3.2ios_xr = 24.3.20ios_xr = 24.3.30ios_xr = 24.4.1ios_xr = 24.4.2ios_xr = 24.4.10ios_xr = 24.4.15ios_xr = 24.4.30ios_xr = 25.1.1ios_xr = 25.1.2ios_xr = 25.1.30ios_xr = 25.2.1ios_xr = 25.2.2ios_xr = 25.2.15ios_xr = 25.2.30Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-20280High· 8.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review
CVE-2026-20274Critical· 9.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review
CVE-2026-20279Critical· 9.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review
CVE-2026-20277High· 8.2As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review
CVE-2026-20278High· 8.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review
CVE-2026-20275High· 8.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review