Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3244 articles · 170315 vulns · 37/41 feeds (7d)
← Back to list
0.0
CVE-2026-13722EXPLOITEDPATCHED
watchguard · fireware os

WatchGuard Firebox Firmware Image Validation Bypass in WatchGuard Fireware OS

Description

A vulnerability was found in WatchGuard Fireware OS up to 11.12.4+541730/12.5.18/12.12/2026.2. It has been classified as critical. The impacted element is an unknown function of the component Firmware Image Handler. The manipulation leads to improper verification of cryptographic signature.

Affected Products

VendorProductVersions
watchguardfireware os11.0, 12.0, 12.5, 2025.1, 11.12.4+541730, 12.5.18, 12.12, 2026.2

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
watchguardfireboxcert_advisory90%

References

  • https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2026-00022(vendor-advisory)

Related News (2 articles)

Tier B
BSI Advisories4h ago
[NEU] [hoch] WatchGuard Firebox: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB10h ago
CVE-2026-13722 | WatchGuard Fireware OS up to 11.12.4+541730/12.5.18/12.12/2026.2 Firmware Image signature verification (wgsa-2026-00022)
→ No new info (linked only)
CVSS 3.10.0 CRITICAL
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2026-00022
CWECWE-347
PublishedJul 2, 2026
Last enriched10h agov2
Trending Score60
Source articles2
Independent2
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-13384EXP
WatchGuard Firebox wgagent Out of Bounds Write Vulnerability
Trending: 60
CRITICALCVE-2026-13383EXP
WatchGuard Firebox ikestubd Out of Bounds Write Vulnerability
Trending: 60
CRITICALCVE-2026-13054EXP
WatchGuard Firebox Arbitrary File Write via Path Traversal in Management Web UI
Trending: 60
CRITICALCVE-2026-13050EXP
WatchGuard Firebox networkd Out of Bounds Write Vulnerability
Trending: 60
CRITICALCVE-2026-13053EXP
WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Command Handler
Trending: 60

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 2, 2026
Actively Exploited
Jul 2, 2026
Patch Available
Jul 2, 2026
Discovered by ZDM
Jul 2, 2026
Updated: description, severity, cvssEstimate, activelyExploited, affectedVersions
Jul 3, 2026

Version History

v2
Last enriched 10h ago
v2Tier C10h ago

Updated severity to CRITICAL, added new affected versions, and corrected exploit availability status.

descriptionseveritycvssEstimateactivelyExploitedaffectedVersions
via VulDB
v115h ago

Initial creation