ThreatCluster

Multiple CVEs Affecting VLAN Implementations Published

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 39

Article Content

Browse articles
ThreatCluster

Two vulnerabilities related to VLAN implementations have been published. CVE-2025-21920, published on April 1, 2025, enforces underlying device types, while CVE-2025-23163, published on May 1, 2025, addresses flag propagation on open. Affected systems may experience issues related to VLAN configurations.

Timeline

2025-04-01
CVE-2025-21920 published
2025-05-01
CVE-2025-23163 published
2026-02-18
Information published about both CVEs