Critical Check Point flaw allows unauthenticated remote code execution as root
Check Point Software disclosed CVE-2026-91843, a pre-authentication stack overflow vulnerability (CVSS 9.8) in Security Management servers enabling unauthenticated attackers to execute code with root privileges. The flaw affects management and log servers with no known active exploitation as of 2026-09-18.