peter bassill · operator
$ cve CVE-2026-15409 JSON

CVE-2026-15409 KEV

10.0
CRITICAL · CVSS 3.1 · EPSS 6.8% (pctl 94)

Patch first

On CISA KEV — known exploited in the wild, due 2026-07-17.

Description

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.

Scoring

CVSS10.0 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS6.8% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-918
On CISA KEVyes — remediate by 2026-07-17
Public exploitnone known
Published2026-07-14
Last modified2026-07-16

CISA KEV

NameSonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability
Added2026-07-14
Due2026-07-17
Vendor / productSonicWall / SMA1000 Appliances
Ransomware useknown

Affected (5)

VendorProduct
sonicwallsma6210
sonicwallsma6210 firmware
sonicwallsma7210
sonicwallsma7210 firmware
sonicwallsma8200v

References

→ the Explorer  ·  watch your stack  ·  NVD