CVE-2026-85102
- CVSS
- —
- EPSS
- —
- CISA KEV
- Added 2026-09-22, due 2026-09-25
- Exploitation
- No report
- Public exploits
- None seen
- State
- Unknown
Coverage
Actively exploitedBleepingComputer
Check Point warns of hackers exploiting Security Gateway VPN RCE flaw(opens the publisher's site in a new tab)
Cybersecurity company Check Point has confirmed active exploitation of CVE-2026-85102, a pre-authentication remote code execution (RCE) vulnerability in the VPN certificate-handling functionality of its Security Gateway product. [...]
Actively exploitedCISA advisories & alerts
CISA Adds Four Known Exploited Vulnerabilities to Catalog(opens the publisher's site in a new tab)
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-85102 Check Point Multiple Products Improper Certificate Validation Vulnerability CVE-2026-93616 Check Point Multiple Products Path Traversal…
What we observed
- kev addedcisa-kev