CVE-2026-73762
A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable unauthorized access to management functionality that should be restricted by the configured access control policy.
- Published Sep 1, 2026
- CVSS 6.6 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)
- A fix is available