CISCO Security Advisory
Published Date: June 19, 2026
CVE: CVE-2026-20181
Advisory Summary
❗ Critical Vulnerabilities Alert: Cisco Identity Services Engine Remote Code Execution and Information Disclosure
Cisco has disclosed multiple critical vulnerabilities affecting its Identity Services Engine (ISE) and the ISE Passive Identity Connector (ISE-PIC). These vulnerabilities enable remote attackers to potentially execute arbitrary code or gain unauthorized access to sensitive information on affected devices, posing a significant security risk to network infrastructure relying on these solutions.
The identified issues are tracked under CVE-2026-20181 and CVE-2026-20190. Cisco has promptly released software updates to mitigate these threats; notably, there are no available workarounds, emphasizing the necessity of immediate patch deployment to secure systems.
IT professionals and security teams managing Cisco ISE environments should prioritize reviewing the advisory and applying the updates without delay to prevent exploitation.
Reference: Vendor Advisory