www.securityweek.com 11 Sept 2026, 11:10 UTC

Check Point Patches Critical VPN Vulnerabilities

Check Point Patches Critical VPN Vulnerabilities
CyberSIXT Evidence Panel
CISA KEV Not in KEV
Patch Patch Status Unknown

CHECK Point has released patches for two critical vulnerabilities, CVE-2026-85102 and CVE-2026-85103, in its VPN gateway and firewall products, with a CVSS score of 9.8. These vulnerabilities allow for remote code execution without authentication, affecting the Security Gateway and Check Point Spark Firewall. Users are advised to define VPN rules manually as a mitigation measure, particularly for Site to Site VPN. The company confirms no evidence of these vulnerabilities being exploited in the wild. Security updates apply to versions R82.10, R82, and R81.20.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline