CVE-2026-12974: Forcepoint Security Engine Ngfw

High severity, CVSS 7.9. EPSS: 0.3% chance of exploitation in the next 30 days.

A Security Policy Bypass vulnerability exists in Forcepoint Security Engine (NGFW). This issue affects Forcepoint Security Engine (NGFW): from 7.1.0 through 7.1.13, from 7.3.0 through 7.3.1, 7.3.3, from 7.4.0 through 7.4.1, and 7.5.0.

Affected products

  • Forcepoint Forcepoint Security Engine Ngfw: from 7.1.0, up to and including 7.1.13; from 7.3.0, up to and including 7.3.1; version 7.3.3 only; from 7.4.0, up to and including 7.4.1; version 7.5.0 only

Published 2026-09-23. Last modified 2026-09-23.