<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — SonicWall</title><description>Actively exploited vulnerabilities affecting SonicWall products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/sonicwall.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-15409 — SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability</title><link>https://wildfortech.com/security#CVE-2026-15409</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2026-15409</guid><description>This server-side request forgery (SSRF) flaw in SonicWall SMA1000 appliances lets a remote attacker — without any login credentials — trick the device into making network requests to arbitrary internal or external destinations. In practice, this can be used to probe internal infrastructure, bypass perimeter controls, or pivot deeper into a network. The fact that ransomware groups are already known to exploit this vulnerability makes it an urgent priority for any organization running these appliances.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>SonicWall</category><category>SMA1000 Appliances</category></item><item><title>CVE-2026-15410 — SonicWall SMA1000 Appliances Code Injection Vulnerability</title><link>https://wildfortech.com/security#CVE-2026-15410</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2026-15410</guid><description>This vulnerability in SonicWall SMA1000 appliances allows a remote attacker who has already gained administrator-level authentication to inject and execute arbitrary operating system commands under specific conditions. Because these are remote access appliances typically exposed to the internet, a compromised admin account could give an attacker full control over the device and potentially the network behind it. The fact that ransomware operators are already known to be exploiting this makes rapid response critical.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>SonicWall</category><category>SMA1000 Appliances</category></item><item><title>CVE-2025-40602 — SonicWall SMA1000 Missing Authorization Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-40602</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-40602</guid><description>SonicWall&apos;s SMA1000 appliances, which provide remote access for enterprise networks, contain a flaw where the system fails to properly verify a user&apos;s authorization before allowing certain actions. This means an attacker could exploit the gap to elevate their privileges within the Appliance Management Console, potentially gaining administrative control over the device. Because SMA1000 sits at the network perimeter and manages remote access, a compromised appliance could expose the broader internal network.</description><pubDate>Wed, 17 Dec 2025 00:00:00 GMT</pubDate><category>SonicWall</category><category>SMA1000 appliance</category></item></channel></rss>