CISA added CVE-2026-93616 (Check Point Multiple Products) to its Known Exploited Vulnerabilities catalog on September 22, 2026, which means there is reliable evidence of exploitation in the wild. Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent contain a path traversal vulnerability that allows an unauthenticated attacker to upload…
Why it matters
CISA lists this as exploited in the wild. Unpatched Multiple Products and Multiple Products systems are exposed to active attacks now.
CISA added CVE-2026-85102 (Check Point Multiple Products) to its Known Exploited Vulnerabilities catalog on September 22, 2026, which means there is reliable evidence of exploitation in the wild. Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to…
Why it matters
CISA lists this as exploited in the wild. Unpatched Multiple Products systems are exposed to active attacks now.
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation.
CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise.
Binding Operational Directive (BOD) 26-04: Prioritizing…
Why it matters
CISA lists this as exploited in the wild. Unpatched BIG-IP and Multiple Products systems are exposed to active attacks now.