CVE-2026-76409: Cisco Nexus Dashboard Software Security Hardening Release September 2026 - Improper Limitation of a Pathname
Published Sep 16, 2026
·Updated
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76409 are related to improper limitation of a pathname issues that are grouped under the Common Weakness Enumeration (CWE) CWE-22.
Affected Software
1 affected component
Cisco Cisco Nexus Dashboard
Event History
Sep 16, 2026
CVE Published
via MITRE·08:10 PM
Data Sourced
via MITRE·08:10 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack vector is network-based and requires low privileges. No user interaction is required.
2
What could a successful exploit allow?
The vulnerability is rated high severity with high potential impact to confidentiality, integrity, and availability.