Security · October 9, 2026

Critical SSRF Vulnerability Discovered in SonicWall SMA1000 Series

a yellow sign that says please brake for snakes
Eric Prouzet / Unsplash

A serious vulnerability has been revealed in SonicWall's remote access product, the SMA1000 series. An update has been provided to address this issue.

On October 6, 2026, the company released a security advisory detailing four vulnerabilities. The advisory rated the severity as the highest level, classified as "Critical". At the time of the advisory's release, no exploitation of the vulnerabilities had been confirmed.

The vulnerability designated as "CVE-2026-102255" is attributed to unintended alternative access paths existing in the "WorkPlace" interface, leading to a server-side request forgery (SSRF) vulnerability. By exploiting the appliance as a forward proxy and issuing requests to it, unauthorized access to internal functions and malicious actions can be performed without authentication. The Common Vulnerability Scoring System (CVSSv3.0) assigned it a base score of "10.0", the maximum possible.

Other vulnerabilities include an OS command injection, "CVE-2026-102256," which can be exploited when authenticated as an administrator, and "CVE-2026-102257," which requires authentication but can be manipulated by crafted archives to extract files outside their intended directories, potentially leading to code execution.