Federal agencies had until today to patch a Cisco firewall flaw that is already being exploited
CVE-2026-20349 lets an unauthenticated attacker reboot a Cisco firewall from the internet. It does not steal anything, which is exactly why it is easy to underrate.