Tech News
← Home  ·  All topics

Cve 2026 83548

1 GoKawiil brief on this topic

SonicWall SMA 1000 Devices Hit by Two Actively Exploited Zero-Days

SonicWall disclosed two vulnerabilities in its SMA 1000 series appliances: a maximum-severity SSRF flaw (CVE-2026-83548) in the user-facing Work Place portal and an OS command injection bug (CVE-2026-83549) in the admin console. SonicWall's security team confirmed active exploitation in the wild and urged customers to patch immediately, while researchers at Rapid7 noted the two bugs can be chained together for unauthenticated remote code execution.