CVE Tools

Critical Check Point VPN Zero-Day Exploited in the Wild (CVE-2026-50751)

Rapid7 BlogBy Rapid73 min read

Reported exploitedCheck Point Remote Access VPNQilinCheck Point Mobile Access
Read at Rapid7 Blog

Below is the opening; the full story is at Rapid7 Blog.

From Rapid7 Blog

Overview

On June 8, 2026, Check Point published a security advisory for CVE-2026-50751">CVE-2026-50751, a critical authentication bypass vulnerability affecting Check Point Remote Access VPN, Mobile Access, and Spark Firewall products. The vulnerability affects deployments configured to use the deprecated IKEv1 key exchange protocol where gateways accept legacy Remote Access clients and do not require a machine certificate for connections.…

Continue at Rapid7 Blog

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store