Skip to content
VulniPulse

Cisco IOS XE Vulnerabilities & Security Advisories

18 advisories tracked · Cisco Security Advisories · 0 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Cisco advisory that VulniPulse classified as IOS XE, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 1 critical, 8 high, 9 medium.

Android app · Google Play

Monitor Cisco CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

Cisco Security Advisories

Polled via the official Cisco PSIRT RSS feed. Advisory pages are fetched for new items to extract fixed software and workarounds.

Latest Cisco IOS XE advisories

High8.6Cisco

High [CVE-2026-20263] Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability

A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling when parsing a specific BEEP SOAP request. An attacker could exploit this vulnerability by sending a specific BEEP SOAP request to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition. Cisco has released software updates that address this vulnerability. There are no workarounds that address these vulnerabilities.

CVE-2026-20263
IOS XE
Aug 5, 2026
High7.7Cisco

High [CVE-2026-20124] Cisco IOS XE Software SNMP Denial of Service Vulnerability

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to improper error handling when parsing SNMP requests. This vulnerability affects all versions of SNMP — Versions 1, 2c, and 3. An attacker could exploit this vulnerability by sending a malformed SNMP request to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly. The attacker must have the SNMPv1 or v2c read-only or read-write community string or valid SNMPv3 user credentials on the affected device. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. There is a mitigation that addresses this vulnerability.

CVE-2026-20124
IOS XE
Aug 5, 2026
High8.6Cisco

High [CVE-2026-20301] Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability

A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of malformed XMCP packets. An attacker could exploit this vulnerability by sending a malformed XMCP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS condition. The attacker does not need the XMCP client username to exploit this vulnerability. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. There is a mitigation that addresses this vulnerability.

CVE-2026-20301
IOS XE
Aug 5, 2026
High7.4Cisco

High [CVE-2026-20004] Cisco IOS XE Software TLS Memory Exhaustion Denial of Service Vulnerability

A vulnerability in the TLS library of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust the available memory of an affected device. This vulnerability is due to improper management of memory resources during TLS connection setup. An attacker could exploit this vulnerability by repeatedly triggering the conditions that cause the memory increase. This could be done in a variety of ways, such as by repeatedly attempting Extensible Authentication Protocol (EAP) authentication when local EAP is enabled on an affected device or by using a machine-in-the-middle att… Affected products named by the advisory: Cisco IOS XE Software 16.9.2; Cisco IOS XE Software 16.9.1a; Cisco IOS XE Software 16.9.1b; Cisco IOS XE Software 16.9.1s; and 3 more.

CVE-2026-20004
IOS XE
Mar 25, 2026
High8.6Cisco

High [CVE-2026-20086] Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family CAPWAP Denial of Service Vulnerability

A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of a malformed CAPWAP packet. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS … Affected products named by the advisory: Cisco IOS XE Software 17.14.1; Cisco IOS XE Software 17.15.1; Cisco IOS XE Software 17.15.3; Cisco IOS XE Software 17.15.2b; and 2 more.

CVE-2026-20086
SwitchesWirelessCatalystIOS XE
Mar 25, 2026
High8.6Cisco

High [CVE-2026-20084] Cisco IOS XE Software for Catalyst 9000 Series Switches DHCP Snooping Denial of Service Vulnerability

A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS) condition. This vulnerability is due to improper handling of BOOTP packets on Cisco Catalyst 9000 Series Switches. An attacker could exploit this vulnerability by sending BOOTP request packets to an affected device. A successful exploit could allow an attacker to forward BOOTP packets from one VLAN to another, resulting in BOOTP VLAN leakage and potentially leading to high CPU utiliz… Affected products named by the advisory: Cisco IOS XE Software 16.6.1; Cisco IOS XE Software 16.6.2; Cisco IOS XE Software 16.6.3; Cisco IOS XE Software 16.6.5; and 3 more.

CVE-2026-20084
SwitchesCatalystIOS XECatalyst 9000
Mar 25, 2026
High7.7Cisco

High [CVE-2026-20125] Cisco IOS Software and IOS XE Software Release 3E HTTP Server Denial of Service Vulnerability

A vulnerability in the HTTP Server feature of Cisco IOS Software and Cisco IOS XE Software Release 3E could allow an authenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending malformed HTTP requests to an affected device. A successful exploit could allow the attacker to cause a watchdog timer to expire and the device to reload, resulting in a DoS condition. Affected products named by the advisory: Cisco IOS 12.2(33)CY1; Cisco IOS 12.2(33)CY2; Cisco IOS 12.2(55)SE3; Cisco IOS 12.2(55)SE2; and 2 more.

CVE-2026-20125
IOS XE
Mar 25, 2026
High8.6Cisco

High [CVE-2026-20012] Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, and Secure Firewall Threat Defense Software IKEv2 Denial of Service Vulnerability

A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition on an affected device. This vulnerability is due to improper parsing of IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device. A successful exploit of Cisco IOS Software and … Affected products named by the advisory: Cisco IOS 15.2(1)S1; Cisco IOS 15.2(4)S; Cisco IOS 15.2(1)S2; Cisco IOS 15.2(2)S1; and 2 more.

CVE-2026-20012
FirewallASA / FirepowerIOS XE
Mar 25, 2026

← All Cisco advisories