CISCO Security Advisory

Published Date: June 19, 2026

CVE: CVE-2026-20181

Advisory Summary

❗ Critical Vulnerabilities Alert: Cisco Identity Services Engine Remote Code Execution and Information Disclosure

Cisco has disclosed multiple critical vulnerabilities affecting its Identity Services Engine (ISE) and the ISE Passive Identity Connector (ISE-PIC). These vulnerabilities enable remote attackers to potentially execute arbitrary code or gain unauthorized access to sensitive information on affected devices, posing a significant security risk to network infrastructure relying on these solutions.

The identified issues are tracked under CVE-2026-20181 and CVE-2026-20190. Cisco has promptly released software updates to mitigate these threats; notably, there are no available workarounds, emphasizing the necessity of immediate patch deployment to secure systems.

IT professionals and security teams managing Cisco ISE environments should prioritize reviewing the advisory and applying the updates without delay to prevent exploitation.

Reference: Vendor Advisory