CVE-2026-3439: SonicWall SonicOS

Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.

A post-authentication Stack-based Buffer Overflow vulnerability in SonicOS certificate handling allows a remote attacker to crash a firewall.

Affected products

  • SonicWall SonicOS: before 7.3.2-7010 (fixed in 7.3.2-7010); before 8.2.0-8009 (fixed in 8.2.0-8009)

Published 2026-03-04. Last modified 2026-06-17.