← All Advisories

Cisco ASA/FTD/FMC internal security review hardening release addresses multiple internally discovered vulnerabilities

Last refreshed2026-09-30

Status: NEW  |  Advisory ID: CVE-2026-20334

Key Details

CVECVE-2026-20334
CVSS Score / Version8.4 (High) / CVSS v3.1
Updated2026-09-18
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is high; user interaction is required; scope is changed; confidentiality impact is high; integrity impact is high; availability impact is high.
Classified asCWE-710 (Improper Adherence to Coding Standards)

What to Know

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.

The vulnerabilities tracked by CVE-2026-20334 are related to issues concerning improper adherence to coding standards that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-710. (NVD)

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-20334
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-20334