Check Point Fixes Critical CVE-2026-91843 Allowing Root Code Execution

2026-09-18T08:51:36Z•bdbdd35c56e1a426d8b0384341a689896dd6a44e2d98ea786907ebd35973f029
CVE-2026-58704CVE-2026-76460CVE-2026-91843APTAcronis BackupBambooTokenCheck PointChosen BrickCisco ISEDDoS-for-hireGoogle PixelIranMQTTNodeEdgeRATNomadRATSpiceRATauthentication-bypasscritical-infrastructurecritical-vulnerabilitydata-breachknown-exploited-vulnerabilitymalwaremaritime-cybersecurityroot-code-executionvulnerabilityzero-day

What happened

Security Affairs feed covering critical vulnerabilities, actively exploited zero-days, malware and APT campaigns, cybercrime disruption, attacks against maritime critical infrastructure, and suspected account compromise leading to sensitive data exposure. The most urgent items include CVE-2026-91843, a CVSS 9.8 unauthenticated root code-execution flaw in Check Point Security Management and Log Servers, and actively exploited vulnerabilities affecting Cisco ISE, Acronis Backup, Google Pixel devices, and the Pixel cellular modem.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
bdbdd35c56e1a426d8b0384341a689896dd6a44e2d98ea786907ebd35973f029
Enrichment time
2026-09-18T08:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.