Link following in Catalyst SD-WAN Manager (formerly SD-WAN vManage) - CVE-2026-20310
Published: August 6, 2026
Vulnerability details
The vulnerability allows a remote user to access or manipulate files through improper link resolution.
The vulnerability exists due to improper link resolution before file access in Catalyst SD-WAN Manager when accessing files through links. A remote user can create or use a crafted link to access or manipulate files through improper link resolution.
This CVE groups multiple internally discovered issues in the improper link resolution before file access class.