WatchGuard Fireware OS

29 known vulnerabilities in WatchGuard Fireware OS, 7 critical, 2 actively exploited, with patch priority, exploit likelihood and the news covering them.

Recently exploited

  • CVE-2025-14733 CVSS 9.3 critical · actively exploited WatchGuard Firebox Out of Bounds Write Vulnerability
  • CVE-2025-9242 CVSS 9.3 critical · actively exploited WatchGuard Firebox Out-of-Bounds Write Vulnerability

Latest vulnerabilities

  • CVE-2026-86134 CVSS 8.7 high A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to…
  • CVE-2026-90441 CVSS 7.1 high A missing authorization vulnerability in the wgagent management daemon's session initialization function allows an authenticated…
  • CVE-2026-86136 CVSS 7.1 high A missing authorization vulnerability in the wgagent management daemon's session initialization function allows an authenticated…
  • CVE-2026-86133 CVSS 8.2 high An integer underflow vulnerability in the WatchGuard Fireware OS IKE daemon (iked) allows a remote attacker who has completed the initial…
  • CVE-2026-86132 CVSS 8.2 high An integer underflow vulnerability in the WatchGuard Fireware OS IKEv2 daemon (iked) allows a remote, unauthenticated attacker to crash…
  • CVE-2026-86131 CVSS 9.2 critical A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows an attacker who controls…
  • CVE-2026-86128 CVSS 8.2 high A NULL pointer dereference vulnerability in Fireware OS's NetFlow packet-processing feature allows a remote, unauthenticated attacker to…
  • CVE-2026-86105 CVSS 6.0 medium An improper authorization vulnerability in Fireware OS's Access Portal reverse proxy allows an authenticated, low-privileged Access Portal…
  • CVE-2026-86104 CVSS 8.7 high An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to…
  • CVE-2026-86101 CVSS 7.2 high An improper authorization vulnerability in WatchGuard Fireware OS's SAML login process allows a remote, authenticated SAML user with…
  • CVE-2026-81433 CVSS 8.7 high A stack-based buffer overflow vulnerability in WatchGuard Fireware OS's DHCP fingerprinting daemon (fingerd) allows an unauthenticated…
  • CVE-2026-18145 CVSS 8.6 high A stack-based buffer overflow vulnerability in the spamBlocker (spamd) service of WatchGuard Fireware OS allows an authenticated attacker…
  • CVE-2026-18105 CVSS 7.1 high An uncontrolled resource consumption vulnerability in Fireware OS's diagnostic tasks feature allows a low-privileged, authenticated user…
  • CVE-2026-13224 CVSS 8.2 high A path traversal vulnerability in the Fireware OS WebUI management agent allows an authenticated administrator to read or list arbitrary…
  • CVE-2026-13046 CVSS 7.5 high A deserialization of untrusted data vulnerability in WatchGuard Fireware OS's SAML single sign-on session handling (samld) allows an…
  • CVE-2026-78011 CVSS 8.7 high An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial…
  • CVE-2026-78010 CVSS 8.7 high A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process iallows a remote unauthenticated attacker to create…
  • CVE-2026-78009 CVSS 8.7 high An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial…
  • CVE-2026-78008 CVSS 8.6 high A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access…
  • CVE-2026-19318 CVSS 9.3 critical A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to execute…
  • CVE-2026-19317 CVSS 8.7 high An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial…
  • CVE-2026-19316 CVSS 8.7 high A double-free vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of…
  • CVE-2026-19315 CVSS 9.3 critical A type confusion vulnerability in the iked process of WatchGuard Fireware OS allows a remote unauthenticated attacker to execute arbitrary…
  • CVE-2026-19314 CVSS 8.7 high An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial…
  • CVE-2026-19313 CVSS 9.3 critical An heap overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to execute arbitrary…
  • CVE-2026-13086 CVSS 9.3 critical A stack-based buffer overflow in the epm (Endpoint Protection Manager) service used by the deprecated Mobile Security feature in…
  • CVE-2026-81851 CVSS 6.9 medium A heap-based buffer overflow vulnerability in Fireware OS's iked process allows an authenticated administrator to crash the IKE daemon…
  • CVE-2025-14733 CVSS 9.3 critical · actively exploited WatchGuard Firebox Out of Bounds Write Vulnerability
  • CVE-2025-9242 CVSS 9.3 critical · actively exploited WatchGuard Firebox Out-of-Bounds Write Vulnerability