CVE-2026-19315
Fireware OS Pre-Authentication Type Confusion in iked Allows Remote Code Execution
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A type confusion vulnerability in the iked process of WatchGuard Fireware OS allows a remote unauthenticated attacker to execute arbitrary code by sending specially crafted network traffic.
| CWE | CWE-125 CWE-763 CWE-843 |
| Vendor | watchguard |
| Product | fireware os |
| Published | Aug 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for watchguard fireware os
Be the first to know when new unknown vulnerabilities affecting watchguard fireware os are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
WatchGuard / Fireware OS
2025.0 < 2026.2.2 12.0 < 12.12.2
WatchGuard / Fireware OS
12.0 < 12.5.20
References
Credits
McCaulay Hudson (@_McCaulay) of watchTowr