CVE-2026-3342: WatchGuard Fireware
High severity, CVSS 7.2. EPSS: 0.7% chance of exploitation in the next 30 days.
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged administrator to execute arbitrary code with root permissions via an exposed management interface. This vulnerability affects Fireware OS 11.9 up to and including 11.12.4_Update1, 12.0 up to and including 12.11.7 and 2025.1 up to and including 2026.1.1.
Affected products
- WatchGuard Fireware: from 12.5, before 12.5.17 (fixed in 12.5.17); from 2025.1, before 2026.1.2 (fixed in 2026.1.2); from 11.9, before 12.11.8 (fixed in 12.11.8)
Published 2026-03-03. Last modified 2026-06-17.