chiprook
← Security
SecurityOctober 7, 2026, 17:37

SonicWall patches pre-auth SSRF in SMA 1000 (CVE-2026-102255)

SonicWall has fixed four vulnerabilities in its SMA 1000 SSL VPN appliances, including pre-auth SSRF CVE-2026-102255, which lets unauthenticated attackers reach internal functionality. Physical and virtual models 6210, 7210 and 8200v are affected; hotfixes are available in firmware 12.4.3-03670 and 12.5.0-03082 and later. No exploitation has been observed so far.

SonicWall patches pre-auth SSRF in SMA 1000 (CVE-2026-102255)
#SonicWall
Read next
Security

SonicWall: Patch Is Only Step One of Four for SMA 1000 Flaws

Security

SonicWall SMA1000 Command Injection CVE-2026-83549 Chained to Root

Security

SonicWall SMA 1000 remains critical edge exposure after September KEV additions

Security

CVE-2026-8452 in Citrix NetScaler: SAML parsing overflow leads to pre-auth RCE