SONICWALL has patched two critical zero-day vulnerabilities in its SMA 1000 VPN appliances that are actively being exploited. The vulnerabilities are: 1) **CVE-2026-83548** (CVSS 10.0) - a pre-authentication SSRF flaw allowing remote attackers to access sensitive functionality; 2) **CVE-2026-83549** (CVSS 7.8) - a post-authentication command injection flaw allowing authenticated attackers to execute arbitrary commands. SonicWall advises customers to upgrade to the latest hotfix and check for any signs of compromise to enhance security across affected models.
SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs
CyberSIXT Evidence Panel
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs
securityaffairs.com
-
Hackers Chain Two New SonicWall Zero-Day Vulnerabilities
infosecurity-magazine.com
-
SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks
securityweek.com
-
FreeRDP 3.31.0 Fixes Pre-Auth RCE Chain in Server
securityonline.info
-
HPE Fabric Composer Vulnerabilities Expose Critical Systems
securityonline.info
-
CVE-2026-83548 Exploited: SMA1000 SSRF Hits 10.0
securityonline.info