Critical Check Point VPN Zero-Day Exploited in the Wild (CVE-2026-50751)
Check Point disclosed CVE-2026-50751, a critical authentication bypass (CVSS 9.3) in Remote Access VPN, Mobile Access, and Spark Firewall products affecting IKEv1 deployments without machine certificate requirements. The vulnerability is actively exploited in the wild since May 7, 2026, with confirmed ties to Qilin ransomware affiliates across several dozen organizations. A related MITM vulnerability (CVE-2026-50752, CVSS 7.4) was also identified but remains unexploited.