Vendor

Check Point

5 known exploited

Check Point news

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

WSO2 Multiple Products Path Traversal Vulnerability (CVE-2026-5430) is being actively exploited, CISA warns

CISA added CVE-2026-93616 (Check Point Multiple Products) to its Known Exploited Vulnerabilities catalog on September 22, 2026, which means there is reliable evidence of exploitation in the wild. Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent contain a path traversal vulnerability that allows an unauthenticated attacker to upload…

Why it matters

CISA lists this as exploited in the wild. Unpatched Multiple Products and Multiple Products systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

Check Point Multiple Products Improper Certificate Validation Vulnerability (CVE-2026-85102) is being actively exploited, CISA warns

CISA added CVE-2026-85102 (Check Point Multiple Products) to its Known Exploited Vulnerabilities catalog on September 22, 2026, which means there is reliable evidence of exploitation in the wild. Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to…

Why it matters

CISA lists this as exploited in the wild. Unpatched Multiple Products systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing…

Why it matters

CISA lists this as exploited in the wild. Unpatched BIG-IP and Multiple Products systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Actively exploited

All 5 →

Check Point Multiple Products

Check Point Multiple Products Improper Certificate Validation Vulnerability

Added Sep 22, 2026Fed. due Sep 25, 2026Coverage →

Check Point Multiple Products

Check Point Multiple Products Path Traversal Vulnerability

Added Sep 22, 2026Fed. due Sep 25, 2026Coverage →

Check Point SmartConsole

Check Point SmartConsole Improper Authentication Vulnerability

Added Jul 22, 2026Fed. due Jul 25, 2026
CVE-2026-50751RansomwareCVSS 9.3

Check Point Security Gateway

Check Point Security Gateway Improper Authentication Vulnerability

Added Jun 8, 2026Fed. due Jun 11, 2026
CVE-2024-24919RansomwareCVSS 8.6

Check Point Quantum Security Gateways

Check Point Quantum Security Gateways Information Disclosure Vulnerability

Added May 30, 2024Fed. due Jun 20, 2024

Products