CVE-2026-15409
ransomware · critical · Evidence score 90
- Vendor
- SonicWall
- Affected software
- SonicWall SMA1000 Appliances
- Exploitation signal
- Listed in CISA Known Exploited Vulnerabilities
- EPSS
- 0.7844
SonicWall SMA1000 Appliances contain a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to potentially cause the appliance to make requests to unintended location.
Provenance
CISA Known Exploited Vulnerabilities
14 July 2026, 10:00 AM AEST