WatchGuard / Fireware OS
74 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-86134 | Fireware OS Pre-Authentication NULL Pointer Dereference Allows Remote Denial of Service | HIGH | 8.7 | Sep 30, 2026 |
| CVE-2026-86104 | Fireware OS Resource Exhaustion in Login Process Allows Denial of Service | HIGH | 8.7 | Sep 29, 2026 |
| CVE-2026-18145 | Fireware OS Stack-based Buffer Overflow in spamd Allows Remote Code Execution | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-86101 | Fireware OS Authorization Bypass in SAML Login Allows Unauthorized SSLVPN Access | HIGH | 7.2 | Sep 29, 2026 |
| CVE-2026-13046 | Fireware OS Deserialization of Untrusted Data in samld Allows Remote Code Execution | HIGH | 7.5 | Sep 29, 2026 |
| CVE-2026-86131 | Fireware OS Code Injection in BOVPN Over TLS Client Allows Remote Code Execution | CRITICAL | 9.2 | Sep 29, 2026 |
| CVE-2026-13224 | Fireware OS Path Traversal in WebUI Management Agent Allows Arbitrary Local File Read | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-86133 | Fireware OS Pre-Authentication Integer Underflow in iked Allows Remote Denial of Service | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-90441 | Fireware OS Missing Authorization in wgagent Management API Allows Denial of Service - Variant B | HIGH | 7.1 | Sep 29, 2026 |
| CVE-2026-18105 | Fireware OS Uncontrolled Resource Consumption in Diagnostic Tasks Allows Denial of Service | HIGH | 7.1 | Sep 29, 2026 |
| CVE-2026-86105 | Fireware OS Improper Authorization in Access Portal Reverse Proxy | MEDIUM | 5.3 | Sep 29, 2026 |
| CVE-2026-86136 | Fireware OS Missing Authorization in wgagent Management API Allows Denial of Service - Variant A | HIGH | 7.1 | Sep 29, 2026 |
| CVE-2026-86132 | Fireware OS Pre-Authentication Integer Underflow in iked Allows Denial of Service | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-86128 | Fireware OS NULL Pointer Dereference in NetFlow IPv6 Traffic Processing Allows Remote Denial of Service | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-81433 | Fireware OS Pre-Authentication Stack Buffer Overflow in fingerd Allows Remote Code Execution | HIGH | 8.7 | Sep 29, 2026 |
| CVE-2026-19315 | Fireware OS Pre-Authentication Type Confusion in iked Allows Remote Code Execution | CRITICAL | 9.3 | Aug 27, 2026 |
| CVE-2026-19314 | Fireware OS Integer Underflow in iked Allows Unauthenticated Denial of Service (DoS) | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-19317 | Fireware OS Pre-Authentication Out-of-Bounds Read in iked Allows Denial of Service (DoS) | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-78011 | Fireware OS Integer Underflow in Iked Allows Unauthenticated Denial of Service (DoS) | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-78010 | Fireware OS Stack-Based Buffer Overflow in iked Allows Unauthenticated Denial of Service | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-13086 | Fireware OS Stack-Based Buffer Overflow in Mobile Security epm Endpoint | CRITICAL | 9.3 | Aug 27, 2026 |
| CVE-2026-19313 | Fireware OS Pre-Authentication Heap Buffer Overflow in iked Allows Remote Code Execution | CRITICAL | 9.3 | Aug 27, 2026 |
| CVE-2026-19316 | Fireware OS Pre-Authentication Double Free in iked Allows Denial of Service (DoS) | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-78009 | Fireware OS Out-of-Bounds Read in iked Allows Unauthenticated Denial of Service (DoS) | HIGH | 8.7 | Aug 27, 2026 |
| CVE-2026-19318 | Fireware OS Pre-Authentication Stack Buffer Overflow in iked Allows Remote Code Execution | CRITICAL | 9.3 | Aug 27, 2026 |
Showing 1 to 25 of 74 CVEs