OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-86132 (CVSS 8.2)

NVD · officialPublished Sep 30, 2026Risk 37/100

An integer underflow vulnerability in the WatchGuard Fireware OS IKEv2 daemon (iked) allows a remote, unauthenticated attacker to crash the process by sending a specially crafted encrypted IKEv2 message negotiated with an AES-GCM cipher suite.

CVSS
8.2
AV:NetworkAC:LowPR:NoneUI:None

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source