Skip to content
VulniPulse

SonicWall Security Advisories & CVEs

23 advisories tracked · SonicWall PSIRT (PSIRT@sonicwall.com CNA) via NVD · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor SonicWall CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Check if your SonicWall device is affected

Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in SonicWall's recent advisories.

Official source

SonicWall PSIRT (PSIRT@sonicwall.com CNA) via NVD

SonicWall is its own CVE Numbering Authority. Its PSIRT portal (psirt.global.sonicwall.com) is a reCAPTCHA-gated JavaScript app with no stable public feed, so VulniPulse ingests SonicWall's CVEs from the NVD CNA feed (PSIRT@sonicwall.com), grouped by the official SNWLID advisory, with affected products and versions from each description and a link back to the SNWLID advisory. Covers SonicOS firewalls (Gen6/Gen7 TZ/NSa/NSsp/NSv), Secure Mobile Access (SMA 100/1000), SSL-VPN, NetExtender, Email Security and GMS/Analytics — SonicWall SSL-VPN is a frequent ransomware entry point.

Latest SonicWall advisories

Critical9.4SonicWall

Critical [CVE-2026-66145 +5] GMS: unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which…

An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip.

CVE-2026-66145CVE-2026-66146CVE-2026-18634+3
GMS / Analytics
Aug 11, 2026
High7.8SonicWall

High [CVE-2026-66149 +1] Email Security: Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an aut…

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execute as root via netmask.

CVE-2026-66149CVE-2026-66150
Email Security
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66150] Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execute as root via SNMP

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execute as root via SNMP.

CVE-2026-66150
Email Security
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66149] Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execute as root via netmask

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execute as root via netmask.

CVE-2026-66149
Email Security
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-18634] insecure handling of serialized objects vulnerability was found in the one of the service of GMS application 9.5.1 (Build 9510.1044) and earlier versions

An insecure handling of serialized objects vulnerability was found in the one of the service of GMS application 9.5.1 (Build 9510.1044) and earlier versions. A local attacker with the ability to interact with the service could exploit this behavior to perform unauthorized actions through the affected component.

CVE-2026-18634
GMS / Analytics
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66154] insufficient certificate validation in a privileged communication workflow, was identified in a GMS application 9.5.1 (Build 9510.1044) and earlier versions which, under a successful MitM attack and controlled network conditions, could permit unauthorized changes

An insufficient certificate validation in a privileged communication workflow, was identified in a GMS application 9.5.1 (Build 9510.1044) and earlier versions which, under a successful MitM attack and controlled network conditions, could permit unauthorized changes.

CVE-2026-66154
GMS / Analytics
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66148] authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges

An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges.

CVE-2026-66148
GMS / Analytics
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66147] unauthenticated command injection vulnerability was identified in the GMS Dispatcher Service in GMS 9.5.1 and earlier versions which allows remote attacker to perform remote code execution through specially crafted requests

An unauthenticated command injection vulnerability was identified in the GMS Dispatcher Service in GMS 9.5.1 and earlier versions which allows remote attacker to perform remote code execution through specially crafted requests.

CVE-2026-66147
GMS / Analytics
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66146] Multiple Cross-Site Scripting (XSS) vulnerabilities were identified in GMS 9.5.1 (Build 9510.1044) and earlier versions that allow a remote attacker to execute javascript script in a user's browser

Multiple Cross-Site Scripting (XSS) vulnerabilities were identified in GMS 9.5.1 (Build 9510.1044) and earlier versions that allow a remote attacker to execute javascript script in a user's browser.

CVE-2026-66146
GMS / Analytics
Aug 11, 2026
UnratedSonicWall

Unknown [CVE-2026-66145] unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip

An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip.

CVE-2026-66145
GMS / Analytics
Aug 11, 2026
Medium5.5SonicWall

Medium [CVE-2026-66151] Global VPN Client: SonicWall Global VPN Client version 4.10.8.1108 and earlier is vulnerable to an out-of-bounds kernel memory read in the SWIPsec…

SonicWall Global VPN Client version 4.10.8.1108 and earlier is vulnerable to an out-of-bounds kernel memory read in the SWIPsec.sys driver, which could allow a local attacker to cause a system crash.

CVE-2026-66151
SSL-VPN & Clients
Aug 7, 2026
Medium6.5SonicWall

Medium [CVE-2026-0516] SonicOS: improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipu…

A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and redirect firewall management users to arbitrary web domains.

CVE-2026-0516
SonicOS Firewalls
Aug 5, 2026
Critical10.0SonicWall Exploited CISA KEV

Critical [CVE-2026-15409 +1] Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface.

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.

CVE-2026-15409CVE-2026-15410
Unclassified
Jul 14, 2026
High8.0SonicWall

High [CVE-2026-0204 +2] SonicOS: vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible un…

A vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible under specific conditions.

CVE-2026-0204CVE-2026-0205CVE-2026-0206
SonicOS Firewalls
Apr 29, 2026
High7.2SonicWall

High [CVE-2026-4112 +3] Improper neutralization of special elements used in an SQL command (“SQL Injection”) in SonicWall SMA1000 series appliances all…

Improper neutralization of special elements used in an SQL command (“SQL Injection”) in SonicWall SMA1000 series appliances allows a remote authenticated attacker with read-only administrator privileges to escalate privileges to primary administrator. Affected product named by the advisory: SSL VPN.

CVE-2026-4112CVE-2026-4113CVE-2026-4114+1
SSL-VPN & Clients
Apr 9, 2026
Medium4.8SonicWall

Medium [CVE-2026-3468 +2] Email Security: stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper…

A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper neutralization of user-supplied input during web page generation, allowing a remote authenticated attacker as admin user to potentially execute arbitrary JavaScript code.

CVE-2026-3468CVE-2026-3469CVE-2026-3470
Email Security
Mar 31, 2026
UnratedSonicWall Exploited CISA KEV

Unknown [CVE-2025-23006] Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands

Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands.

CVE-2025-23006
Unclassified
Jan 23, 2025
UnratedSonicWall Exploited CISA KEV

Unknown [CVE-2024-53704] SonicOS: Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication

An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication. Affected product named by the advisory: SonicOS.

CVE-2024-53704
SonicOS Firewalls
Jan 9, 2025
UnratedSonicWall Exploited CISA KEV

Unknown [CVE-2021-20023] SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host.

CVE-2021-20023
Email Security
Apr 20, 2021
UnratedSonicWall Exploited CISA KEV

Unknown [CVE-2021-20022] SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remote host

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remote host.

CVE-2021-20022
Email Security
Apr 9, 2021

← All vendors