Hackers exploit new Check Point SmartConsole zero-day, CISA orders emergency patch
Check Point confirmed hackers exploited a new zero-day, CVE-2026-16232, to steal admin-level login tokens for its SmartConsole management panel. CISA added it to its exploited vulnerabilities catalog with a July 25 federal patch deadline. Source: Check Point, SecurityWeek, Bleepi
Check Point confirmed hackers exploited a new authentication-bypass zero-day, tracked as CVE-2026-16232, in its SmartConsole admin panel, letting attackers obtain admin-level login tokens on management servers exposed to the internet without IP restrictions. CISA added the flaw to its Known Exploited Vulnerabilities catalog, giving federal agencies until July 25 to patch. It is the third Check Point vulnerability added to that federal list in two years, after a VPN flaw exploited by the Qilin ransomware gang earlier in 2026. Source: Check Point, SecurityWeek, BleepingComputer, CISA.