CVE-2026-95676
A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authentication allows a remote attacker to bypass single-factor password verification under non-default operating conditions. Additional authentication factors still apply.
- Published Sep 23, 2026
- CVSS 7.4 high
- 0.5% chance of exploitation in the next 30 days (EPSS)