CVE-2026-20112 | Cisco IOS XE up to 17.18.1w cross site scripting (cisco-sa-iox-xss-LpGkzwtJ / EUVD-2026-15442)
A vulnerability was found in Cisco IOS XE. It has been classified as problematic. The affected element is an unknown function of the component Application Hosting Environment Management Interface. The manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-20112. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.