Skip to content
Back to Guavy Wire
Stocks

Cisco Discloses Critical Flaws in IOS XR and Nexus 9000 Switches

Instruments
CSCO
Share

Cisco has disclosed seven vulnerabilities affecting its networking operating system, IOS XR, and the Silicon One integration in the Nexus 9000 data center switch. The two critical flaws, CVE-2026-20274 and CVE-2026-20279, stem from improper resource control via buffering issues and incorrect certificate validation with missing authentication, respectively.

The vulnerabilities were discovered during an internal security review by Cisco. A separate bug, CVE-2026-20212, affects the Silicon One integration in the Nexus 9000 switch. This vulnerability could allow an unauthenticated, remote attacker to execute code with root privileges by exploiting exposed TCP ports 43210 and 43211 in the default Layer 3 virtual routing and forwarding.

Cisco advises users to upgrade affected Nexus 9000 switches to a fixed Cisco NX-OS release to mitigate these risks. The company has not specified which releases are affected or when the fixes will be available.

More on Stocks

Disclaimer: Guavy is a data and market intelligence provider, not an investment adviser. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc