<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>cybercrime.club</title><link>https://cybercrime.club/tags/vmanage/</link><description>Infrastructure security news for people who build infrastructure.</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Tue, 21 Apr 2026 07:08:56 -0400</lastBuildDate><atom:link href="https://cybercrime.club/tags/vmanage/" rel="self" type="application/rss+xml"/><item><title>Cisco Catalyst SD-WAN Manager: Three CVEs Land on CISA KEV With April 28 Federal Deadline</title><link>https://cybercrime.club/posts/cisco-sdwan-manager-cve-2026-20122-20128-20133-cisa-kev/</link><pubDate>Tue, 21 Apr 2026 07:08:56 -0400</pubDate><guid>https://cybercrime.club/posts/cisco-sdwan-manager-cve-2026-20122-20128-20133-cisa-kev/</guid><description>CISA added CVE-2026-20122, CVE-2026-20128, and CVE-2026-20133 in Cisco Catalyst SD-WAN Manager (vManage) to the KEV catalog on April 20, 2026. Two of the three were confirmed exploited in the wild by Cisco PSIRT in March; together they let an attacker move from low-privilege API access to full vManage takeover.</description><category>vulnerabilities</category></item></channel></rss>