CVE-2026-86102

Published on September 28, 2026

An OS command injection vulnerability in the WatchGuard AP internal API service allows an attacker with network access to the AP to execute arbitrary shell commands on the underlying operating system.

Weakness type (CWE)CWE-78, CWE-863

Related articles

This product uses the NVD API but is not endorsed or certified by the NVD.

CVE database