CVE-2026-76500: Cisco Application Policy Infrastructure Controller Hardening Release: October 2026 - Improper Control of a Resource Through its Lifetime Vulnerabilities
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76500 are related to issues with improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The CVSS vector indicates network attackability with low attack complexity, no required privileges, and no user interaction.
What could a successful exploit affect?
The CVSS vector rates confidentiality, integrity, and availability impacts as high.
Does the available information identify affected APIC versions or configurations?
No affected software versions, release identifiers, or configuration prerequisites are provided in the available information.