CVE-2024-40766 is an improper access control vulnerability in SonicWall SonicOS affecting Gen 5, Gen 6, and Gen 7 firewalls. The vulnerability, with a CVSS score of 9.3, allows unauthorized access and can crash the…
SonicWall has identified three critical vulnerabilities in its SonicOS firewall operating system, disclosed in security advisory SNWLID-2026-0004. The most severe vulnerability, CVE-2026-0204, allows unauthenticated…
A significant increase in scanning activity targeting SonicWall firewall management interfaces has been detected, with nearly 597,000 sessions recorded on May 12, 2026. This spike, reported by threat intelligence firm…
SonicWall has issued a security advisory regarding a critical vulnerability in its SonicOS operating system, identified as CVE-2025-40601. This high-severity flaw affects Gen7 and Gen8 hardware and virtual appliances,…
SonicWall reported a security incident involving unauthorized access to backup firewall configuration files stored in a cloud environment. The company attributed the breach to a state-backed threat actor and engaged…
SonicWall reported unauthorized access to backup firewall configuration files in September 2025, attributed to a state-backed threat actor. The company engaged Mandiant for an investigation and communicated with…
A reconnaissance campaign targeting SonicWall firewalls is underway, with attackers utilizing over 4,000 unique IP addresses to identify vulnerable devices. From February 22 to February 25, 2026, there were 84,142…
SonicWall has released a patch addressing a vulnerability in SonicOS that allows hackers to crash firewalls. Additionally, two flaws in Email Security appliances (CVE-2025-40604 and CVE-2025-40605) have been fixed,…
SonicWall has disclosed a critical vulnerability in its SonicOS SSLVPN service, tracked as CVE-2025-40601, which allows remote, unauthenticated attackers to crash Gen7 and Gen8 firewalls. The flaw, caused by a…
SonicWall has released a patch addressing a critical flaw in SonicOS that allows hackers to crash firewalls. Additionally, two vulnerabilities in Email Security appliances (CVE-2025-40604 and CVE-2025-40605) have been…