Summary: Cisco Secure Client ZTA Agent version 5.1.13 is now available for download in the dashboard and includes a fix for the certificate validation issue. Promptly upgrade to ensure uninterrupted operation of Zero Trust Access.
Background:
A flaw has been identified in Cisco Secure Client ZTA Agent versions 5.1.8 through 5.1.12, where the agent may fail to start after the code-signing certificate expires. This issue results in certificate verification errors, as shown in agent logs, and will prevent the ZTA Agent from launching past the listed certificate expiration dates.
Version
Certificate Expiry Date
5.1.9
January 14, 2026
5.1.10
January 14, 2026
5.1.11
June 4, 2026
5.1.12
June 4, 2026
After these dates, affected agents will no longer function due to certificate expiration.
Action Required: To avoid service interruption, customers running versions 5.1.9 or 5.1.10 should upgrade to Cisco Secure Client ZTA Agent version 5.1.13 as soon as possible. This issue has been resolved in the latest release. Please review your current agent versions and refer to the certificate expiry dates to determine your risk and prioritize your upgrade plan.
For more details and release notes, visit: https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/Cisco-Secure-Client-5/release/notes/release-notes-cisco-secure-client-5-1.html
Cisco Secure Client version 5.1.13 is now available on Dashboard under Secure Connect > Identities & Connections > Remote Access. Look for the Secure Client Downloads button; you'll see the latest version number and buttons to download the client packages from the modal:
For any questions or issues, contact Support for assistance and reference this article or the release notes above.
... View more