CVE-2026-18634

Summary

An insecure handling of serialized objects vulnerability was found in the one of the service of GMS application 9.5.1 (Build 9510.1044) and earlier versions. A local attacker with the ability to interact with the service could exploit this behavior to perform unauthorized actions through the affected component.

Affected Software

VendorProductVersion RangeStatus
SonicWallGMS9.5.1 and earlier versionsaffected

Weaknesses

  • CWE-502: CWE-502 Deserialization of untrusted data

References