SonicWall is a broadly represented vendor of network security appliances, including firewalls and unified threat management platforms, with a large installed base spanning enterprise and small-business deployments worldwide. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity and a strong tendency to acquire public exploit code; a moderate share have been confirmed as exploited in the wild and cataloged by CISA. The exposure concentrates in flagship products such as SonicOS and the TZ series firewall line and recurs through memory-safety and authentication weakness classes including stack-based and classic buffer overflows, out-of-bounds writes, cross-site scripting, and improper authentication—patterns endemic to firmware-based network appliances that parse untrusted traffic and manage administrative access. Defenders should prioritize patching internet-facing SonicWall devices and inventory end-of-life models, as their perimeter role and persistent deployment make them high-value targets for initial access and lateral pivoting. Current exploitation activity, severity counts, and KEV status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by SonicWall, Inc. over time
Signals from CVEs in this vendor scope (230 CVEs).
230 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44228CRITICAL Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai | Dec 10, 2021 | 10.0 | 99 | YES | YES |
CVE-2024-53704CRITICAL An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication. | Jan 9, 2025 | 9.8 | 98 | YES | YES |
CVE-2022-0847HIGH A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux ker | Mar 10, 2022 | 7.8 | 98 | YES | YES |
CVE-2021-45046CRITICAL It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Threa | Dec 14, 2021 | 9.0 | 98 | YES | YES |
CVE-2021-20038CRITICAL A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute cod | Dec 8, 2021 | 9.8 | 98 | YES | YES |
CVE-2024-38475CRITICAL Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the se | Jul 1, 2024 | 9.1 | 97 | YES | YES |
CVE-2021-20021CRITICAL A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host. | Apr 9, 2021 | 9.8 | 96 | YES | YES |
CVE-2019-7481HIGH Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 version 9.0.0.3 and earlier. | Dec 17, 2019 | 7.5 | 96 | YES | YES |
CVE-2026-15409CRITICAL A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the | Jul 14, 2026 | 10.0 | 93 | YES | YES |
CVE-2023-44221HIGH Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary comm | Dec 5, 2023 | 7.2 | 91 | YES | NO |
Signals from CVEs in this vendor scope (230 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by SonicWall, Inc..
Media articles that mention a CVE ID that affects a product developed by SonicWall, Inc. — matched by CVE ID, not by vendor name.