CVE 2026 87969
An OS command injection vulnerability in the WatchGuard AP diagnostic CLI allows an authenticated administrator to execute arbitrary operating system commands by supplying crafted input.
Weakness Type and Impact #
CWE CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC CAPEC-88 OS Command Injection
Exploitation Status #
WatchGuard thanks Carlos Garrido of Pentraze Cybersecurity for working with us to protect our customers finder
View the canonical record on cve.org
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
