CVE-2026-0205: SonicWall SonicOS
Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.
Affected products
- SonicWall SonicOS: before 6.5.5.2-28n (fixed in 6.5.5.2-28n); from 7.0.0.0, up to and including 7.0.1-5169; from 7.1.1-7040, before 7.3.2-7010 (fixed in 7.3.2-7010); from 8.0.0-8035, before 8.2.0-8009 (fixed in 8.2.0-8009)
Published 2026-04-29. Last modified 2026-06-17.