importantSYS.SOURCE: The Hacker News• 2026-10-07T21:47:44+05:30
SonicWall Addresses Critical Pre-Authentication SSRF Vulnerability in SMA1000 Appliances
SonicWall has released hotfixes for a critical pre-authentication SSRF vulnerability (CVSS 10.0) in its SMA1000 appliances, allowing unauthorized access to internal functions. The flaw, tracked as CVE-2026-102255, affects specific firmware versions and requires immediate patching.
SonicWall has released hotfixes for four flaws in its SMA1000 appliances, the gateways that give remote workers access to a company's network and applications. The most serious could allow an attacker without a login to send requests through the appliance and reach internal functions.
SonicWall rates it 10.0 on the CVSS scale and says it has no evidence that any of the four flaws is being
*** END OF TRANSMISSION ***