๐ฅ This vulnerability is being actively exploited in the wild (CISA Known Exploited Vulnerabilities catalog)
CVE-2026-83549: SonicWall SMA1000 Appliances OS Command Injection Vulnerability
Summary
SonicWall SMA1000 Appliances contain an OS command injection vulnerability (a flaw that lets attackers run unauthorized commands on a system) that allows a logged-in administrator to execute arbitrary commands and gain remote code execution (the ability to run code on a system they don't own). This vulnerability is actively being exploited by attackers in real-world attacks.
Solution / Mitigation
Apply mitigations in accordance with vendor instructions from SonicWall's security advisory (https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016), following CISA's BOD 26-04 patching guidelines. If mitigations are unavailable, stakeholders should discontinue use of the product. The patch deadline is September 5, 2026.
Vulnerability Details
EPSS: 0.9%
Yes
๐ฅ Actively Exploited
September 1, 2026
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-83549
First tracked: September 2, 2026 at 02:00 PM
Classified by LLM (prompt v3) ยท confidence: 95%