← Back

CVE-2026-20156

nvd nist
Published: Jul 15, 2026Modified: Aug 14, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20156 are related to improper restriction of operations within the bounds of a memory buffer that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-119.

Affected (4)

2 products
Roomos
Roomos Cloud
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Before 11.32.6.0
From 26.0.1.2 to 26.5.2.2
Cisco
Before 11.39.1.1
From 26.0.1.2 to 26.7.1.7

Timeline

No history available yet.