Our takeCisco confirms active exploitation of CVE-2026-20316 in Secure Firewall Management Center. Patch to a fixed release now.Cyber Resilience desk
Sources (1)
- cccs · cccs
What this means for you — Security leader:Update Cisco Secure Firewall Management Center (FMC) to 7.0.9.1, 7.2.11.1, 7.4.7.1, 7.6.5.1, 7.7.12.1 or 10.0.1.1 immediately; CVE-2026-20316 is under active exploitation.
What this means for you — Lean IT orgs:If you run Cisco Secure Firewall Management Center, update it today to one of these releases: 7.0.9.1, 7.2.11.1, 7.4.7.1, 7.6.5.1, 7.7.12.1 or 10.0.1.1. This flaw is already being exploited in the wild.
What this means for you — MSP:Audit all client FMC deployments and push updates to 7.0.9.1, 7.2.11.1, 7.4.7.1, 7.6.5.1, 7.7.12.1 or 10.0.1.1; CVE-2026-20316 is confirmed exploited.
What this means for you — Researcher:Cisco Secure Firewall Management Center prior to 7.0.9.1 / 7.2.11.1 / 7.4.7.1 / 7.6.5.1 / 7.7.12.1 / 10.0.1.1 contains CVE-2026-20316 under active exploitation per CCCS advisory AV26-757.