Cisco SD-WAN Critical Flaw Prompts CISA Deadline as AI Browser Vulnerabilities Emerge
U.S. agencies issue urgent CISA deadline for patching critical Cisco SD-WAN vulnerabilities, while researchers uncover PleaseFix flaws in AI browsers that could compromise password managers.

CISA Mandates Cisco SD-WAN Patch Deadline Amid Critical Vulnerabilities
U.S. cybersecurity agencies have issued an urgent directive requiring organizations to patch critical vulnerabilities in Cisco SD-WAN solutions by a specified deadline. The Cybersecurity and Infrastructure Security Agency (CISA) has added these flaws to its Known Exploited Vulnerabilities catalog, indicating active exploitation in the wild.
AI Browser Vulnerabilities Threaten Password Security
Concurrently, security researchers at Zenity Labs have uncovered PleaseFix vulnerabilities in Perplexity's Comet AI browser that could allow attackers to access 1Password vaults and personal files. These zero-click exploits leverage calendar invites to compromise AI agents, highlighting emerging threats at the intersection of artificial intelligence and credential management.
Broader Cisco Security Landscape
The Cisco SD-WAN vulnerabilities come amid reports of multiple security issues affecting Cisco infrastructure, including firewall products. While specific details about the 48 firewall vulnerabilities mentioned in sources remain limited due to access restrictions, the pattern underscores the importance of comprehensive vulnerability management across enterprise networks.
Security Recommendations:
- Immediately apply Cisco SD-WAN patches as mandated by CISA deadlines
- Review AI browser implementations for potential credential exposure risks
- Implement multi-factor authentication for critical systems
- Monitor for unusual network activity that might indicate exploitation attempts
