Cisco Patches Critical Flaw Allowing Root Access on Nexus 9000 Switches
Cisco has issued patches for a critical security flaw affecting 10 of its Silicon One-based Nexus 9000 switch models. Tracked as CVE-2026-20212 and rated 9.8 out of 10 in severity, the vulnerability could allow an unauthenticated remote attacker to execute code with root-level privileges — the highest level of system access — without needing any login credentials.
Alongside this, Cisco released a hardening update for its IOS XR software bundling seven separate vulnerabilities (tracked under an umbrella advisory), two of which also carry the maximum-concern 9.8 severity rating. Notably, Cisco has confirmed there is no workaround available for any affected version of IOS XR, meaning organisations must apply the official patch to be protected — there is no interim mitigation to fall back on.
Network switches and routers running these systems are typically core infrastructure, often exposed to internal or even external networks, making them attractive targets. Successful exploitation could give attackers complete control over affected devices, potentially enabling data interception, network disruption, or use as a launchpad for further attacks. Given the severity scores and lack of workarounds, businesses using this equipment should treat these updates as urgent.