CVE-2026-57910Patch

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper authentication in the WatchGuard Agent allows an unauthenticated attacker with network access to cause the agent to execute arbitrary code with elevated privileges.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306CWE-347CWE-494

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 4 signals
  • Technical details provided in 5 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-08-27); latest day: 1
  • 5 total mentions across 3 days

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-08-26: 1Mentions · 2026-08-27: 3Mentions · 2026-09-03: 1Patch / Workaround · 2026-08-26: 1Patch / Workaround · 2026-08-27: 2Patch / Workaround · 2026-09-03: 1Technical Details · 2026-08-26: 1Technical Details · 2026-08-27: 3Technical Details · 2026-09-03: 108-2608-2709-03
Signal classification2 categories
Patch
480.0%
Disclosure
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-08-261
Patch1
2026-08-273
Disclosure1Patch2
2026-09-031
Patch1
Full discourse5 posts
  • Daily CyberSecurity@Daily_CyberSec
    Patch

    Two critical WatchGuard Agent flaws (CVE-2026-57909, CVE-2026-57910) allow unauthenticated remote code execution. Update to 1.25.13.0000 now. #WatchGuard #RCE #CyberSecurity #CVE202657909 #Infosec https://securityonline.info/watchguard-agent-rce-vulnerability/

    Post summary

    WatchGuard’s Agent contains two critical unauthenticated RCE flaws (CVE‑2026‑57909 and CVE‑2026‑57910). Users are urged to update to version 1.25.13.0000 to remediate the vulnerabilities.

    050174990
    13.0K followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: Critical #RCE flaws in #WatchGuard #Agent. #CVE-2026-57909 CVSS: 9.4. #CVE-2026-57910 CVSS: 9.3. Unauthenticated attackers can execute arbitrary code! Upgrade to 1.25.13.0000. See CCB advisory at https://ccb.belgium.be/advisories/warning-remote-code-execution-vulnerabilities-watchguard-agent-patch-immediately #Patch #Patch #Patch

    Post summary

    The post warns of two critically‑scored RCE CVEs in WatchGuard Agent, shares severity details, and urges users to upgrade to version 1.25.13.0000 as per the vendor advisory linked.

    02000387
    7.2K followersView on X
  • Cyber Edition@CyberEdition
    Patch

    🚨 Two critical WatchGuard Agent flaws, CVE-2026-57909 and CVE-2026-57910, could let unauthenticated attackers execute code on Windows endpoints. WatchGuard urges users to update to Agent 1.25.13.000 or later. #CyberSecurity #Windows Read more: https://thecyberedition.com/critical-watchguard-agent-flaws-enable-unauthenticated-code-execution-on-windows-endpoints/

    Post summary

    Two critical WatchGuard Agent flaws (CVE-2026-57909/57910) allow unauthenticated code execution on Windows endpoints; WatchGuard recommends updating to Agent 1.25.13.000 or later.

    00010131
    767 followersView on X
  • iototsecnews@iototsecnews
    Patch

    WatchGuard Agent のCVE-2026-57910/57909 が FIX:RCE による root/SYSTEM 権限取得の恐れ https://iototsecnews.jp/2026/08/26/critical-watchguard-agent-flaws-let-unauthenticated-attackers-execute-remote-code/ WatchGuard Agent に脆弱性 CVE-2026-57910/CVE-2026-57909 が発見されました。その背景にあるのは、認証処理の不足やパス階層の検証不備です。その結果、未認証の第三者による遠隔からの任意コード実行/最上位権限でのホスト全域に対する完全な操作/機密情報の流出/マルウェアの常駐/内部ネットワークへの侵入拡大などの深刻な影響が生じます。最新版への迅速な更新/稼働端末におけるバージョン情報の確認/検出サービスの不審な UDP 通信監視/異常プロセス起動の追跡といった多角的な安全確保処置が求められます。 #CVE202657909 #CVE202657910 #Vulnerability #WatchGuard

    Post summary

    The article announces that WatchGuard Agent CVE-2026-57910/57909 enable unauthenticated remote code execution and privileges escalation, and urges users to apply rapid updates to mitigate the risk.

    00000126
    510 followersView on X
  • Autumn Good@autumn_good_35
    Disclosure

    『Improper authentication in the WatchGuard Agent allows an unauthenticated attacker with network access to cause the agent to execute arbitrary code』 CVE-2026-57910 — WatchGuard Agent improper authentication allows unauthenticated remote code execution https://psirt.watchguard.com/CVE-2026-57910/

    Post summary

    The post announces WatchGuard Agent's improper authentication flaw (CVE‑2026‑57910) that permits unauthenticated remote code execution, with no indication of a PoC, exploit tool, active attacks, or mitigation.

    00000415
    7.0K followersView on X

Explore more