OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-12974

HIGH · CVSS 7.9 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

A security policy bypass vulnerability in the Forcepoint Security Engine (NGFW) could allow unauthorized access to sensitive data or systems, potentially compromising network security. Organizations using affected versions (7.1.0 to 7.1.13, 7.3.0 to 7.3.1, 7.3.3, 7.4.0 to 7.4.1, and 7.5.0) should prioritize patching this vulnerability to mitigate the risk of exploitation. Security teams must assess their deployments and implement necessary updates to maintain robust defenses.

CVE
CVE-2026-12974
Severity
HIGH
CVSS
7.9
EPSS
0.29%

Original NVD Description

A Security Policy Bypass vulnerability exists in Forcepoint Security Engine (NGFW). This issue affects Forcepoint Security Engine (NGFW): from 7.1.0 through 7.1.13, from 7.3.0 through 7.3.1, 7.3.3, from 7.4.0 through 7.4.1, and 7.5.0.