CVE-2026-66154: SonicWall Gms

High severity, CVSS 8.3. EPSS: 0.2% chance of exploitation in the next 30 days.

An insufficient certificate validation in a privileged communication workflow, was identified in a GMS application 9.5.1 (Build 9510.1044) and earlier versions which, under a successful MitM attack and controlled network conditions, could permit unauthorized changes.

Affected products

Published 2026-08-11. Last modified 2026-08-28.