Week 39 – Check Point Under Attack: Critical Zero-Day Exploited in the Wild

21 – 27 Sept 2026
What happens when the security infrastructure itself becomes the target?
This week’s CVE of The Week covers CVE-2026-93616, a critical Check Point zero-day vulnerability with a CVSS score of 9.8 — exploited in targeted attacks before a patch was available.
The pre-authentication path traversal and file upload flaw can allow unauthenticated attackers to upload and execute arbitrary scripts on vulnerable Check Point management systems.
And it’s not the only Check Point vulnerability currently under attack.
Read the full analysis on the White Hat blog to learn about the affected systems, active exploitation and recommended mitigation steps.

White Hat IT Security is a Europe-based Managed Security Services Provider (MSSP) and proud Microsoft Solution Partner. Its Microsoft-verified managed security solutions (MXDR) reflect their deep expertise and commitment to excellence in cybersecurity. The company was awarded the Partner of the Year Hungary Award by Microsoft in 2024 and 2025.
With the largest incident response capacity in the CEE region, they’re trusted by organizations to deliver fast, effective, and proactive protection. Their portfolio includes penetration testing, vulnerability assessments, managed Cyber Threat Intelligence, as well as Governance, Risk and Compliance (GRC) consulting and specialized security training.
They are committed to supporting professional initiatives that aim to raise cybersecurity awareness and maturity—both for individuals and organizations. They regularly contribute to the community through knowledge sharing, education, and outreach, helping to build a safer digital future for all.