Cisco issues emergency patch for critical zero-day vulnerability
Summary
Cisco has released urgent patches for a critical authentication bypass vulnerability, tracked as CVE-2026-76460, in its Identity Services Engine (ISE), which has been actively exploited as a zero-day in the wild. This vulnerability impacts an API endpoint that fails to enforce adequate authentication controls, allowing attackers to bypass management interfaces and potentially execute commands with root privileges. In response to the ongoing threats, the US cybersecurity agency CISA has added the vulnerability to its Known Exploited Vulnerabilities catalog and mandated that federal agencies patch it within three days, reflecting the seriousness of the issue. Cisco's Product Security Incident Response Team (PSIRT) has strongly urged all users to upgrade to specified fixed software versions to mitigate risks.