Skip to content
VulniPulse

Complete feed

Exploited / KEV

Known exploitation or KEV-listed

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Critical10.0SonicWall Exploited CISA KEV

Critical [CVE-2026-15409 +1] Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface.

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.

CVE-2026-15409CVE-2026-15410
Unclassified
Jul 14, 2026
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2025-23006] Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands

Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands.

CVE-2025-23006
Unclassified
Jan 23, 2025
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2024-53704] SonicOS: Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication

An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication. Affected product named by the advisory: SonicOS.

CVE-2024-53704
SonicOS Firewalls
Jan 9, 2025
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2021-20023] SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host.

CVE-2021-20023
Email Security
Apr 20, 2021
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2021-20022] SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remote host

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remote host.

CVE-2021-20022
Email Security
Apr 9, 2021
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2021-20021] vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host

A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.

CVE-2021-20021
Email Security
Apr 9, 2021
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2021-20016] SonicWall SMA100: SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information

A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x. Affected product named by the advisory: SonicWall SMA100.

CVE-2021-20016
Unclassified
Feb 3, 2021
UnratedSonicWall Exploited CISA KEV

Advisory [CVE-2019-7481] Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources

Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 version 9.0.0.3 and earlier.

CVE-2019-7481
Unclassified
Dec 17, 2019