CVE-2026-6788: Uncontrolled search path in PluginLauncher allows SYSTEM code execution in WatchGuard Agent
Published May 6, 2026
·Updated
Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.This issue affects WatchGuard Agent before 1.25.03.0000.
Affected Software
2 affected components
WatchGuard WatchGuard Agent<1.25.03.0000
WatchGuard Agent Windows<1.25.03.0000
Event History
May 6, 2026
CVE Published
via MITRE·03:46 PM
Data Sourced
via MITRE·03:46 PM
DescriptionWeakness
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-6788?
CVE-2026-6788 is classified as a critical vulnerability due to its potential for SYSTEM code execution.
2
How do I fix CVE-2026-6788?
To fix CVE-2026-6788, upgrade the WatchGuard Agent to version 1.25.03.0000 or later.
3
What systems are affected by CVE-2026-6788?
CVE-2026-6788 affects all versions of WatchGuard Agent prior to 1.25.03.0000 on Windows.
4
What kind of attack does CVE-2026-6788 enable?
CVE-2026-6788 enables attackers to execute SYSTEM-level code by exploiting an uncontrolled search path.
5
Is there a workaround for CVE-2026-6788?
There are no known effective workarounds for CVE-2026-6788; applying the update is recommended.