SonicWall SonicOS Security Bypass Flaw Disclosed
A vulnerability in SonicWall SonicOS across multiple firewall generations allows attackers to bypass security policy enforcement.
ANSSI-FR (CERTFR-2026-AVI-0972) published an advisory covering CVE-2026-0516, a vulnerability in SonicWall SonicOS that allows an attacker to cause a bypass of the security policy. The flaw affects a broad range of SonicWall hardware and virtual firewall products spanning Gen6, Gen7, and Gen8 lines, including TZ, NSA, NSsp, SM, and NSv series devices across multiple firmware branches.
Only Gen8 devices currently have an available patch (versions prior to 8.2.2-8015 are affected). For Gen6 and Gen7 devices, SonicWall has published a workaround via bulletin SNWLID-2026-0009, with a Gen7 patch planned for a later date. No indication of active exploitation is provided in the advisory; this is a vendor-driven vulnerability disclosure requiring remediation via patch or mitigation.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0972
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free