logo

CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day vulnerabilities exploited in the wild

ID: 43e7ed83-8222-560c-8348-fe25027b893d

STIX ID: report--43e7ed83-8222-560c-8348-fe25027b893d

Feed Name: Tenable Blog

Threat Score
90/100

Date Published: 2026-07-15

Date Updated: 2026-07-16

Author: Scott Caveza

...
...

**SonicWall SMA 1000 appliances are affected by two zero-day vulnerabilities (CVE-2026-15409 SSRF and CVE-2026-15410 RCE) that have been observed exploited in the wild and may be chained to enable unauthenticated remote code execution; SonicWall has released patches for affected firmware versions, provided IoCs, and the issues were added to CISA's KEV catalog with an urgent remediation date, so immediate patching and threat-hunting are recommended.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.