Network security

Check Point advisories: every record the registers tie to its products

In one line

12 advisories are attributed to Check Point products in this record, covering July 2022 to June 2026, and 1 of them appears in the CISA catalogue of known exploited vulnerabilities. A further 104 register entries mention Check Point without naming one of its products as affected, and are excluded rather than counted. Each entry below links to the register that published it.

Attributed

12

tied to a named product

Known exploited

1

in the CISA catalogue

Rated critical

1

by the register

Last checked

Jul 17, 2026

sources re-queried

Why this list is shorter than a CVE mirror

The registers are searched by keyword, so a search for a company name returns advisories that merely mention it. A mirror publishes those. This page does not: an entry appears only when the register itself ties it to a product of Check Point, through a reference on the vendor's own domain, the vendor named as the assigning authority, or the affected product list naming it.

104 entries did not clear that bar and are not shown. That is the difference, and it is deliberate: a page that lists another company's vulnerability under this heading is wrong in the way that matters most.

11 of the 12 records carry a CVSS base score from the register. Where none is published, none is shown, and no score is estimated.

The full list, most recently exploited and most recent first

Records held by several registers are folded into one entry with a link to each, so the same vulnerability is not counted twice. Entries listed in the CISA catalogue of known exploited vulnerabilities are shown first, because that is the one flag on this page that changes what a reader should do next.

  • CVE-2024-24919criticalKnown exploitedMay 30, 2024

    Check Point Quantum Security Gateways Information Disclosure Vulnerability

  • WID-SEC-2026-1818highCVSS 9.1Jun 12, 2026

    Affected products: Check Point Security Gateway, Check Point Remote Access VPN, Check Point Mobile Access, Check Point Spark Firewall

  • WID-SEC-2026-1746mediumCVSS 5.3Jun 01, 2026

    Affected products: Check Point Security Gateway

  • WID-SEC-2026-1726highCVSS 8.1May 29, 2026

    Affected products: Check Point Security Gateway

  • CVE-2026-48136mediumCVSS 4.1May 26, 2026

    When Compliance is enabled on Check Point Multi-Domain Management, an authenticated administrator with read-write access to one Management Domain (CMA) can modify stored metadata associated…

  • WID-SEC-2024-1743mediumCVSS 7.8Dec 02, 2024

    Affected products: Check Point Zone Alarm

  • WID-SEC-2024-1261highCVSS 8.6Jun 27, 2024

    Affected products: Check Point Security Gateway

  • WID-SEC-2024-0931mediumCVSS 5.3Apr 19, 2024

    Affected products: Check Point Zone Alarm

  • WID-SEC-2023-2876mediumCVSS 7.8Nov 13, 2023

    Affected products: Check Point Endpoint Security

  • WID-SEC-2023-1860mediumCVSS 7.8Jul 24, 2023

    Affected products: Check Point Endpoint Security

  • WID-SEC-2022-1544highCVSS 8.8Sep 28, 2022

    Affected products: Check Point Zone Alarm

  • WID-SEC-2022-0700mediumCVSS 5.7Jul 18, 2022

    Affected products: Check Point Endpoint Security

Which registers contributed

RegisterOperated byEntriesLatest
European Vulnerability DatabaseENISA, European Union102Jul 17, 2026
CERT-Bund security advisoriesBSI, Federal Republic of Germany10Jun 12, 2026
Known Exploited Vulnerabilities catalogueCISA, United States4Aug 25, 2025

The entry counts here are the raw register totals for Check Point, before attribution. They are larger than the list above for exactly that reason.

Questions this page answers

How many vulnerabilities does Check Point have?

12 advisories in this record are tied by a register to a product of Check Point. That is not the same as the number of vulnerabilities the products contain, and no public source knows that number. It is the count of what has been found, disclosed and published, which depends on how much the products are examined and how openly the vendor discloses.

Are any Check Point vulnerabilities being actively exploited?

1 of the 12 records here appears in the CISA catalogue of known exploited vulnerabilities, which lists flaws with confirmed exploitation in the wild. They are shown first in the list above. Whether any of them affects your deployment depends on the versions and components you run.

Why does this page show fewer CVEs for Check Point than other sites?

Because a keyword search for a company name returns advisories about other companies' products that mention it in passing, and this page excludes those. 104 register entries name Check Point without naming one of its products as affected. A mirror that lists them produces a longer page and a wrong number.

Where do the Check Point advisories on this page come from?

From European Vulnerability Database (ENISA, European Union); CERT-Bund security advisories (BSI, Federal Republic of Germany); Known Exploited Vulnerabilities catalogue (CISA, United States). Every entry links back to the register that published it, and carries the date that register states. Where the same vulnerability is held by several registers it is shown once with a link to each, rather than counted twice.

Does a long advisory list mean Check Point is insecure?

No. A register records what researchers found and what the vendor disclosed, so a widely deployed product with a working disclosure process accumulates more entries than one nobody examines. A short list can equally mean a small install base or a vendor that publishes little. This page reports the record and does not rate the vendor, because whether this is acceptable depends on your risk appetite, your compliance scope and the alternatives you are weighing.

A list of advisories is not a risk assessment

What matters is which of these touch the components you actually run, in the configuration you actually run them in, and whether that is acceptable next to the alternatives on your shortlist. DecisionOS reads the same pool against the criteria of a real decision and produces a memo that holds up in front of a board and an auditor.

The full Check Point record, including sources and open questions

Check Point vulnerabilities: all 12 advisories on record, with sources | DecisionOS by nexalign