Improper control of a resource through its lifetime in Cisco Secure Email and Web Manager and Secure Email Gateway - CVE-2026-20353
Published: September 14, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to improper control of a resource through its lifetime in Cisco Secure Email Gateway and Cisco Secure Email and Web Manager when processing input. A remote attacker can bypass implemented security restrictions and compromise the affected system.
Affected software
Secure Email Gateway
How to mitigate CVE-2026-20353
Secure Email Gateway - addressed in versions 15.5.5-014, 16.5.0-780