SonicWall patches two SMA 1000 flaws after finding evidence they were actively exploited, possibly as a chain for remote code execution.

SonicWall SMA1000 vulnerabilities CVE-2026-83549 and CVE-2026-83548, which allow remote code execution, are being exploited in attacks.

SonicWall warned customers that threat actors are chaining two new SMA1000 zero-day vulnerabilities in remote code execution attacks.