SonicWall fixes pre-auth SSRF flaw in SMA 1000 appliances (CVE-2026-102255)

SonicWall has patched four vulnerabilities in its Secure Mobile Access (SMA) 1000 series appliances, including CVE-2026-102255, which could let remote unauthenticated attackers direct the appliance to issue requests on their behalf and perform unauthorized operations. The vendor says there is currently no evidence of in-the-wild exploitation, but attackers' track record with similar flaws suggests it could come soon.

Source: www.helpnetsecurity.com

Curated Permalink