← Back to Feed

CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day vulnerabilities exploited in the wild

CVE-2026-15409CVE-2026-15410

July 15, 2026 · Tenable Blog · Severity: CRITICAL

SonicWall patched two recently exploited zero-day vulnerabilities in its SMA 1000 Series secure remote access appliances which may have been chained for unauthenticated remote code execution.Key takeawaysCVE-2026-15409 and CVE-2026-15410 are a pair of exploited vulnerabilities that may have been chained together to allow for code execution on SonicWall SMA1000 series appliances. Zero-day.

Key Takeaways

  • CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day — CRITICAL severity involving CVE-2026-15409, CVE-2026-15410
  • Tenable research provides detailed vulnerability analysis and remediation steps
  • Security teams should validate exposure and apply vendor patches
☕ Buy a Coffee