VulnSea

checkpoint has 5 CVEs on record between 2024 and 2026. 4 were published in the last 90 days. The busiest recent month was September 2026 with 3. The median CVSS is 9.8 (critical), with 4 rated critical. 40% have been exploited in the wild — well above the 1% corpus average, so checkpoint flaws are worth patching on sight. Most affected products: Quantum Security Gateway (2), Quantum Security Management (1), cloudguard_network_security (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
40% vs 1% corpus
Median CVSS
9.8
Publish → KEV
(2)
Last 90 days
4 prev 0

Products

  • Quantum Security Gateway 2
  • Quantum Security Management 1
  • cloudguard_network_security 1
  • multi-domain_security_management 1
5
Total CVEs
4
Critical
2
CISA KEV
2
Exploited

checkpoint vulnerabilities

CVEs affecting checkpoint, newest first. Open any entry for full detail, references, and exploit status.

5 CVEsRSS

CVE-2026-91843Critical· 9.8PoC
6d ago

A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.

A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.

Abyssalcheckpoint · Quantum Security ManagementEPSS 0.50%via NVD
CVE-2026-85102Critical· 9.8
1w ago

Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.

Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.

Midnightcheckpoint · Quantum Security GatewayEPSS 0.33%via NVD
CVE-2026-85103Critical· 9.8
1w ago

A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.

A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.

Midnightcheckpoint · Quantum Security GatewayEPSS 0.36%via NVD
CVE-2026-16232Critical· 9.1CISA KEV0dayPoC
2mo ago

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successfu…

Hadalcheckpoint · multi-domain_security_managementEPSS 72%via NVD
CVE-2024-24919High· 8.6CISA KEVPoC
2y ago

Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades

Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerab…

Abyssalcheckpoint · cloudguard_network_securityEPSS 100%via NVD
checkpoint vulnerabilities (CVEs) · VulnSea