Organizations should immediately apply the security update released by Check Point on September 22, 2026. All affected versions of the Security Management Server must be patched. Network segmentation and monitoring of web service interfaces are recommended as interim measures. Review system logs for indicators of compromise.
Quick answers
What is CVE-2026-93616?
Organizations should immediately apply the security update released by Check Point on September 22, 2026. All affected versions of the Security Management Server must be patched. Network segmentation and monitoring of web service interfaces are recommended as interim measures. Review system logs for indicators of compromise.
How severe is CVE-2026-93616?
high, CVSS 9.8
Is CVE-2026-93616 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-93616 be mitigated?
Organizations should immediately apply the security update released by Check Point on September 22, 2026. All affected versions of the Security Management Server must be patched. Network segmentation and monitoring of web service interfaces are recommended as interim measures. Review system logs for indicators of compromise.
CVSS
9.8
Vendor
Check Point Software Technologies
Published
Sep 30, 2026 · 08:43
Patch
Unknown / not confirmed
Affected products
Check Point Security Management Server
Mitigation
Organizations should immediately apply the security update released by Check Point on September 22, 2026. All affected versions of the Security Management Server must be patched. Network segmentation and monitoring of web service interfaces are recommended as interim measures. Review system logs for indicators of compromise.
Check Point Software Technologies has confirmed that a previously unknown vulnerability in its Security Management Server was exploited in targeted attacks starting July 23, 2026. The flaw, tracked as CVE-2026-93616, permits unauthenticated remote code execution via the server's web service. A security update was released on September 22, 2026, urging immediate patching by all affected organizations.