Vulnerabilities
Summary — last 7 days
New vulnerabilities3,333▲ 343 vs. last week
Critical / high1,493▲ 121 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)592▲ 117 vs. last week
10 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | High (7.8) | 11% | ⚠ Active exploitation | Sonicwall Sma8200vSonicwall Sma6210 FirmwareSonicwall Sma7210 Firmware | 9/1/2026 | 9/21/2026 | Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary… | |
| Analyzed | Critical (10) | 8.8% | ⚠ Active exploitation | Sonicwall Sma8200vSonicwall Sma6210 FirmwareSonicwall Sma7210 Firmware | 9/1/2026 | 9/3/2026 | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform unauthorized operations. | |
| Analyzed | High (7.2) | 12% | ⚠ Active exploitation | Sonicwall Sma6210 FirmwareSonicwall Sma7210 FirmwareSonicwall Sma8200v | 7/14/2026 | 7/16/2026 | Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands. | |
| Analyzed | Critical (10) | 6.8% | ⚠ Active exploitation | Sonicwall Sma6210 FirmwareSonicwall Sma7210 FirmwareSonicwall Sma8200v | 7/14/2026 | 7/16/2026 | A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location. | |
| Analyzed | High (7.2) | 0.71% | — | Sonicwall Sma6210 FirmwareSonicwall Sma6200 FirmwareSonicwall Sma7200 FirmwareSonicwall Sma7210 Firmware+1 | 4/9/2026 | 6/17/2026 | Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN user to bypass Workplace/Connect Tunnel TOTP authentication. | |
| Analyzed | Medium (6.6) | 0.74% | — | Sonicwall Sma6210 FirmwareSonicwall Sma6200 FirmwareSonicwall Sma7200 FirmwareSonicwall Sma7210 Firmware+1 | 4/9/2026 | 6/17/2026 | Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN admin to bypass AMC TOTP authentication. | |
| Analyzed | High (7.2) | 0.60% | — | Sonicwall Sma6210 FirmwareSonicwall Sma8200vSonicwall Sma7200 FirmwareSonicwall Sma7210 Firmware+1 | 4/9/2026 | 6/17/2026 | An observable response discrepancy vulnerability in the SonicWall SMA1000 series appliances allows a remote attacker to enumerate SSL VPN user credentials. | |
| Analyzed | High (7.2) | 0.53% | — | Sonicwall Sma6210 FirmwareSonicwall Sma6200 FirmwareSonicwall Sma7200 FirmwareSonicwall Sma7210 Firmware+1 | 4/9/2026 | 6/17/2026 | Improper neutralization of special elements used in an SQL command (“SQL Injection”) in SonicWall SMA1000 series appliances allows a remote authenticated attacker with read-only administrator privileges to escalate privileges to primary administrator. | |
| Analyzed | Medium (6.6) | 2.8% | ⚠ Active exploitation | Sonicwall Sma6200 FirmwareSonicwall Sma6210 FirmwareSonicwall Sma7200 FirmwareSonicwall Sma7210 Firmware+1 | 12/18/2025 | 6/17/2026 | A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance management console (AMC). | |
| Analyzed | Critical (9.8) | 23% | ⚠ Active exploitation | Sonicwall Sma8200vSonicwall Sma6200 FirmwareSonicwall Sma6210 FirmwareSonicwall Sma7200 Firmware+4 | 1/23/2025 | 9/24/2026 | Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands. |