checkpoint has 5 CVEs on record between 2024 and 2026. 4 were published in the last 90 days. The busiest recent month was September 2026 with 3. The median CVSS is 9.8 (critical), with 4 rated critical. 40% have been exploited in the wild — well above the 1% corpus average, so checkpoint flaws are worth patching on sight. Most affected products: Quantum Security Gateway (2), Quantum Security Management (1), cloudguard_network_security (1).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 40% vs 1% corpus
- Median CVSS
- 9.8
- Publish → KEV
- —(2)
- Last 90 days
- 4 prev 0
Products
- Quantum Security Gateway 2
- Quantum Security Management 1
- cloudguard_network_security 1
- multi-domain_security_management 1
Worst active — by depth score
CVE-2024-24919High· 8.6Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades97CVE-2026-16232Critical· 9.1An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges89CVE-2026-91843Critical· 9.8A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.66CVE-2026-85103Critical· 9.8A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.54CVE-2026-85102Critical· 9.8Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.54
checkpoint vulnerabilities
CVEs affecting checkpoint, newest first. Open any entry for full detail, references, and exploit status.
5 CVEsRSS
CVE-2026-91843Critical· 9.8PoCA stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.
A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.
CVE-2026-85102Critical· 9.8Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
CVE-2026-85103Critical· 9.8A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
CVE-2026-16232Critical· 9.1CISA KEV0dayPoCAn authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges
An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successfu…
CVE-2024-24919High· 8.6CISA KEVPoCPotentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades
Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerab…