SonicWall
- 4
- vulnerabilities tracked
- 4
- under active exploitation
- 1
- critical
- 2 September 2026
- latest publication
cve
Vulnerability watch
idvulnerabilityseveritypublished
CVE-2026-83548SonicWall SMA1000 Appliances Server-Side Request Forgery VulnerabilitySonicWall SMA1000 Appliances Critical CVE-2026-83549SonicWall SMA1000 Appliances OS Command Injection VulnerabilitySonicWall SMA1000 Appliances Critical CVE-2026-15409A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.SonicWall SMA1000 Appliances Critical CVSS 10 CVE-2026-15410Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.SonicWall SMA1000 Appliances Critical CVSS 7.2