CVE-2026-66151: SonicWall Global VPN Client

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

SonicWall Global VPN Client version 4.10.8.1108 and earlier is vulnerable to an out-of-bounds kernel memory read in the SWIPsec.sys driver, which could allow a local attacker to cause a system crash.

Affected products

  • SonicWall Global VPN Client: up to and including 4.10.8.1108

Published 2026-08-07. Last modified 2026-08-28.