NEW: Group Profiler — instant APT intel lookup. Try it →

CVE-2026-76461

Reported by 3 distinct sources tracked by ThreatFilter. First reported 2026-09-14 00:00 UTC , most recent 2026-09-15 12:22 UTC.

HIGH 9.8 CISA KEV EXPLOITED cisco

Corroboration timeline

Each row is the first time that source reported this CVE, so the lag column shows how long each took relative to the earliest report. Corroboration across distinct sources is a confidence signal that a single advisory cannot give you.

  1. cisa-kev 2026-09-14 00:00 UTC first report

    CVE-2026-76461 — Cisco Secure Email Gateway: Cisco Secure Email Gateway SQL Injection Vulnerability

  2. sophos-news 2026-09-15 00:00 UTC +24h

    Cisco Secure Email Gateway vulnerability (CVE-2026-76461) in active exploitation

  3. rapid7-blog 2026-09-15 12:22 UTC +36h

    CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild

How this page is built

ThreatFilter ingests 52 public threat-intelligence feeds. A page is published here only when at least 3 distinct sources report the same CVE — roughly 0.2% of the CVEs seen. Everything above is derived from those feeds; nothing is hand-written, and the timeline is the raw record of what each source published and when.

See the live advisory feed, the full source list, or the analyst tools.