08/24/2026
Vulnerability Alert: Cisco Patches Multiple Critical Flaws
Cisco has released security updates addressing nine vulnerabilities affecting Cisco Crosswork platforms and Cisco Secure Workload, including four vulnerabilities with a maximum CVSS score of 10.0.
The critical flaws include SQL injection, missing authentication, improper access controls, authentication bypasses, and external control of file system vulnerabilities. Successful exploitation could expose affected enterprise environments to serious security risks.
Affected products include:
• Cisco Crosswork Data Gateway
• Cisco Crosswork Network Controller
• Cisco Crosswork Planning
• Cisco Secure Workload
Cisco has released fixes in:
• Crosswork 7.2.1-SP
• Secure Workload 3.10.9.1
• Secure Workload 4.0.4.16
Cisco states that these vulnerabilities were discovered during internal testing and are not currently known to be actively exploited.
Organizations using affected Cisco products should review their deployed versions and prioritize the appropriate security updates.