Check Point Pre-Auth Flaws Under Attack Check Point has warned that two critical, pre-authentication vulnerabilities affecting its security products are being actively exploited. CVE-2026-85102 affects VPN certificate handling in Security Gateways and Spark Firewalls, while CVE-2026-93616 affects the Check Point Management web service. Both carry vendor-assigned CVSS 3.1 scores of 9.8, and CISA added both vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog.

Read the full article at SOCRadar →