Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
15 September 2026
Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild.
The vulnerability, tracked as CVE-2026-76461, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as a case of insufficient validation in the email parsing logic that could allow an unauthenticated, remote attacker