← Back to Feed
CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day vulnerabilities exploited in the wild
CVE-2026-15409CVE-2026-15410
July 15, 2026 · Tenable Blog · Severity: CRITICAL
SonicWall patched two recently exploited zero-day vulnerabilities in its SMA 1000 Series secure remote access appliances which may have been chained for unauthenticated remote code execution.Key takeawaysCVE-2026-15409 and CVE-2026-15410 are a pair of exploited vulnerabilities that may have been chained together to allow for code execution on SonicWall SMA1000 series appliances. Zero-day.
Key Takeaways
- CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day — CRITICAL severity involving CVE-2026-15409, CVE-2026-15410
- Tenable research provides detailed vulnerability analysis and remediation steps
- Security teams should validate exposure and apply vendor patches