Cisco warns that a high-severity vulnerability affecting its Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) software is being exploited in the wild. The issue is tracked as CVE-2026-20349, with a reported CVSS score of 8.6.

The flaw involves insufficient error checking when the devices process HTTP requests. Cisco says this weakness can allow an unauthenticated remote attacker to trigger a denial-of-service condition, potentially causing affected devices to crash.

Both outlets describe the same core details: Cisco’s public advisory, the product scope (ASA and FTD), the remotely triggered DoS behavior, and the claim of active real-world exploitation. The reporting emphasizes that attackers are using the weakness to crash devices, rather than reporting data theft or authentication bypass as primary outcomes in these summaries.