Multiple vulnerabilities in SonicWall products (August 12, 2026)
Multiple vulnerabilities have been discovered in SonicWall products. Some of them allow an attacker to cause remote arbitrary code execution, privilege escalation and breach of data confidentiality.
CSIRTS triage
- What
- Multiple vulnerabilities in SonicWall products allow remote code execution, privilege escalation, and data breach.
- Who is affected
- SonicWall product users on affected versions.
- Urgency
- High priority; remote code execution capability poses immediate risk despite no reported active exploitation.
- Action
- Check SonicWall security advisories for affected product lines and apply available patches immediately.
AI-assisted analysis generated from the source advisory — verify against the original.
Details
Original advisory: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1006/
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-661500.20% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 10% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-661540.13% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
- Moderate exploitation riskCVE-2026-661481.2% 30-day exploitation probability. Patch within normal cadence, watch for KEV listing. Riskier than 65% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-661490.20% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 10% of all EPSS-scored CVEs.
- Moderate exploitation riskCVE-2026-661472.0% 30-day exploitation probability. Patch within normal cadence, watch for KEV listing. Riskier than 79% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-661460.26% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 18% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-186340.22% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 12% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-661450.56% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 44% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-66150 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66154 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66148 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66149 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66147 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66146 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-18634 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-66145 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- medium[NEW] [medium] SonicWall Email Security: Multiple Vulnerabilities Enable Execution of Arbitrary Code with Admi…cert-bund
- high[NEW] [high] SonicWall GMS: Multiple Vulnerabilitiescert-bund
- highCVE-2026-66154: An insufficient certificate validation in a privileged communication workflow, was identified …nvd
- highCVE-2026-66150: Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email…nvd
- highCVE-2026-66149: Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email…nvd
- mediumCVE-2026-66148: An authenticated command injection vulnerability was identified in GMS Command-Line Interface …nvd
- criticalCVE-2026-66147: An unauthenticated command injection vulnerability was identified in the GMS Dispatcher Servic…nvd
- highCVE-2026-18634: An insecure handling of serialized objects vulnerability was found in the one of the service o…nvd
- mediumCVE-2026-66146: Multiple Cross-Site Scripting (XSS) vulnerabilities were identified in GMS 9.5.1 (Build 9510.1…nvd
- criticalCVE-2026-66145: An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510…nvd
Recent advisories for SonicWall products
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownSonicWall SMA1000 Series Products Multiple Vulnerabilitieshkcert · 2026-07-15
More from CERT-FR Avis de sécurité
- unknownMultiple vulnerabilities in Keycloak (August 25, 2026)2026-08-25
- unknownMultiple vulnerabilities in Cisco IOS XE (August 25, 2026)2026-08-25
- unknownMultiple vulnerabilities in LibreNMS (August 24, 2026)2026-08-24
- unknownMultiple vulnerabilities in Metabase (August 24, 2026)2026-08-24
- unknownVulnerability in SPIP (August 21, 2026)2026-08-21