CVE-2026-101891EPSS p17.9%

CVE-2026-101891CVE-2026-101891

Description

An improper access control vulnerability in an internal API service on WatchGuard Access Points allows an unauthenticated attacker with network access to the AP to obtain a valid API session.

Scoring

EPSS0.27% probability of exploitation · percentile 17.9% · 2026-10-05T12:00:23Z
Last modified2026-09-28
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.