CRITICAL ⚡ MUST-KNOW
Check Point Patches Exploited SmartConsole Zero-Day (CVE-2026-16232)
Check Point released security updates for its Security Management and Multi-Domain Management (MDSM) products, including a fix for an actively exploited zero-day. The flaw, CVE-2026-16232 (CVSS 9.3), is an authentication bypass in the SmartConsole login process that grants attackers full admin access. Check Point confirms exploitation in the wild against customers with certain configurations. Admins running SmartConsole or Security/Multi-Domain Management should patch immediately.