SonicWall SMA1000 flaws CVE-2026-15409 and CVE-2026-15410 actively exploited
Source headline: SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now
Intelligence Summary
SonicWall has issued an advisory about two SMA1000 vulnerabilities that are being exploited in the wild. The issues are tracked as CVE-2026-15409 and CVE-2026-15410. The company says threat activity is consistent with zero-day use, so exposure may be ongoing. Organizations using affected SMA1000 appliances should apply the newly released security updates as soon as possible. Delaying patching increases the chance of compromise and unauthorized access.
Recommended Action
Check whether your SMA1000 deployment is affected by CVE-2026-15409 and apply the vendor fix. Until then, watch authentication and outbound traffic logs for the indicators described in the source. This signal rests on a single report, so corroborate it before acting on anything irreversible.