# Cisco warns of actively exploited ISE authentication bypass

_Published Thursday, September 17, 2026 at 3:19 AM EDT · Security · Latest · Tier 1 — Major_

![Cisco warns of actively exploited ISE authentication bypass — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjKC3hrw_VedPPLj2lAD6qhUn-7eJuJ8dqSBMAOwTEjUdYxlwnOla9dFF4pwOBNr-QsjzJPuXEtkA6orbkLHUqHI3RbWMBR0VeNaYvZqSnkNnM5HH-T9ofLeBzrZcOXn5nbZyNC2YeQjANmTzBAhaAwhDoGoXLJOeB1nFbIr-TJuFTHM8y0TAzj6Hxd0MYM/s1700-nu-rw-lo-l85-e365/cisco-0-day.jpg)

Cisco warned that CVE-2026-76460, a maximum-severity flaw in Identity Services Engine and ISE Passive Identity Connector, is being actively exploited. The reported API authentication-control weakness can let an unauthenticated remote attacker bypass the web management interface. Fixed releases are available for affected versions, and CISA added the flaw to its Known Exploited Vulnerabilities catalog with a September 19 federal patch deadline. Cisco said no workaround is available.

## Sources

- [The Hacker News](https://thehackernews.com/2026/09/cisco-warns-of-new-zero-day-ise-auth.html)

---
Canonical: https://techandbusiness.org/newswire/H6MTmFJkPk0W5CcE30C8a3
Published: 2026-09-17T07:19:53.264Z
Story chronology: 2026-09-17T06:39:00.000Z
Retrieved: 2026-09-17T09:39:39.326Z
Publisher: Tech & Business (techandbusiness.org)
