Exploited CVEs / By vendor / Check Point
Check Point vulnerabilities actively exploited
5 Check Point CVEs on the CISA Known Exploited Vulnerabilities catalog, newest first. Refreshed daily.
Every CVE below is confirmed exploited in the wild, not just theoretically severe. The newest addition is CVE-2026-85102 (Multiple Products, added 2026-09-22). 2 of the 5 are used in ransomware campaigns. New CISA KEV entries appear here the day they are cataloged; the freshest across all vendors are on exploited this week.
Senserva AI Opinion and rich prompt for Check Point exploited CVEs
Copy this prompt into Claude, ChatGPT, or Copilot. The facts are included, sourced from this page.
All Check Point entries
| CVE | Product | Added to KEV | Signals |
|---|---|---|---|
| CVE-2026-85102 | Multiple Products | 2026-09-22 | CVSS 9.8, EPSS 0% |
| CVE-2026-93616 | Multiple Products | 2026-09-22 | CVSS 9.8 |
| CVE-2026-16232 | SmartConsole | 2026-07-22 | CVSS 9.8, EPSS 72% |
| CVE-2026-50751 | Security Gateway | 2026-06-08 | ransomware, CVSS 9.3, EPSS 84% |
| CVE-2024-24919 | Quantum Security Gateways | 2024-05-30 | ransomware, CVSS 8.6, EPSS 100% |
Common questions about exploited Check Point CVEs
Which Check Point vulnerabilities are actively exploited?
As of September 2026, 5 Check Point CVEs are on the CISA Known Exploited Vulnerabilities catalog, meaning exploitation in the wild is confirmed. 2 are linked to ransomware campaigns.
What is the newest exploited Check Point CVE?
CVE-2026-85102, affecting Multiple Products, added to the CISA KEV catalog on 2026-09-22. This page refreshes daily, so the newest entry is always first in the table.
How urgent are these Check Point CVEs?
KEV listing is the strongest fix-first signal there is: it means confirmed exploitation, not a prediction. Patch these ahead of higher-CVSS issues that nobody is exploiting. Check the vendor advisory (linked below) for fixed versions and workarounds.
Can I ask my own AI about exploited Check Point CVEs?
Yes. This page includes a free copy-paste AI prompt carrying the newest Check Point KEV entries, with CVSS, EPSS, and ransomware context, into Claude, ChatGPT, or Copilot. The data is refreshed twice a day (morning and afternoon US Central).
Authoritative references
All vendors, searchable with due dates and CSV export: the exploited-CVE tracker. Every vendor with a page: exploited by vendor.