Skip to main content
CyberSingle-sourceHighDevelopingFeatured
7.4

Cisco ISE Zero-Day Auth Bypass: Max CVSS, No Patch Yet

Cisco disclosed a critical zero-day authentication bypass (CVE-2026-76460) in Identity Services Engine with a 10.0 CVSS score. The flaw allows unauthenticated remote attackers to bypass API endpoint authentication, potentially compromising network access control. No patch is available, and exploitation may be active, posing immediate risk to enterprise networks.

Dark Readingabout 23 hours agoUSengCredibility 31%View source

Score Breakdown

Mosaic Score7.4
Confidence0.9
Significance0.8
Source credibility0.3
Source

Part of a situation

Related signals

8 found