GHSA-mh9h-xjv7-9f27 · Severity: high — An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated...
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command. This vulnerability affects Fireware OS 11.0 up to and including 11.12.4_Update1, 12.0 up to and including 12.12 and 2025.1 up to and including 2026.2.
Conclusion & alert: CVE-2026-13053 is rated Moderate Risk (52.9/100): CVSS High severity. Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
EPSS has not published a score for this CVE yet—common while NVD analysis or FIRST scoring is still pending. Monitor daily updates and reassess once scores appear.
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 8.6 | 4.0 | HIGH |
|
— | — | 5d1c2695-1a31-4499-88ae-e847036fd7e3 |
GHSA-mh9h-xjv7-9f27 · Severity: high — An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated...
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| watchguard | fireware_os | >= 11.0, <= 11.12.4+541730 | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:11.0 |
| watchguard | fireware_os | >= 12.0, <= 12.12 | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:12.0 |
| watchguard | fireware_os | >= 12.5, <= 12.5.18 | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:12.5 |
| watchguard | fireware_os | >= 2025.1, <= 2026.2 | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:2025.1 |