CVE-2026-76461 actively exploited: Cisco Secure Email Gateway SQL Injection Vulnerability

CISA added CVE-2026-76461, a SQL injection in Cisco Secure Email Gateway, to its Known Exploited Vulnerabilities catalogue. It could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. Federal agencies must remediate by September 17, 2026.