CVE-2026-13053: WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Command Handler
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WatchGuard Fireware OSto a version that resolves this vulnerability.Fixed in 2026.2.1 - Upgrade
Upgrade
WatchGuard Fireware OSto a version that resolves this vulnerability.Fixed in 12.12.1 - Upgrade
Upgrade
WatchGuard Fireware OSto a version that resolves this vulnerability.Fixed in 12.5.19 - Upgrade
Upgrade
WatchGuard Fireware OSto a version that resolves this vulnerability.Fixed in 12.11.9
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13053?
CVE-2026-13053 has a high severity rating of 8.6.
How do I fix CVE-2026-13053?
To fix CVE-2026-13053, update your WatchGuard Fireware OS to the latest security patch provided by WatchGuard.
What systems are affected by CVE-2026-13053?
CVE-2026-13053 affects WatchGuard Fireware OS versions from 11.0 to 11.12.4_Update1, 12.0 to 12.12, and 2025.1.
What type of vulnerability is CVE-2026-13053?
CVE-2026-13053 is classified as an Out-of-bounds Write vulnerability.
Can CVE-2026-13053 allow unauthorized access?
CVE-2026-13053 requires authenticated privileged user access to exploit, but it can allow execution of arbitrary code.