boxscore/security
VENDOR · referenceVendors · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

Sonicwall

Vendor reference — Sonicwall · sector: Network & Infrastructure. Cumulative disclosure record across the archive.

Follow Sonicwall — Atom feed

Career totals

Disclosures & known-exploited
All-timeYTD
CVEs2712
KEV entries172
Rate & severity
KEV/100Med CVSSMed EPSSCHML
63.07.8.16517750

KEV/100 = KEV entries ÷ CVEs × 100. Med CVSS / Med EPSS are medians over all disclosures. C/H/M/L = disclosures by CVSS severity band.

Monthly disclosures

Trend (by first-seen month, full archive): ▅▁▂▁▃▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▂▂▁▂▂▁▁▁▁▁▁▂▁▁▁▁▁▁▂█

Last 12 months (new CVEs by first-seen day)
MonthNew CVEs
2025-090
2025-100
2025-110
2025-121
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-072
2026-0810

Notable CVEs

Ranked by the published formula: KEV → EPSS → CVSS → CVE ID.

Notable (ranked)
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2019-74817.5100.0HIGHYES2021-11-03
CVE-2021-20038100.0YES2022-01-28
CVE-2024-537049.899.9CRITICALYES2025-02-18
CVE-2021-200219.899.7CRITICALYES2021-11-03
CVE-2026-154107.299.5HIGHYES2026-07-14
CVE-2023-4422199.5YES2025-05-01
CVE-2026-1540910.099.4CRITICALYES2026-07-14
CVE-2021-200234.998.8MEDIUMYES2021-11-03
CVE-2021-200169.898.4CRITICALYES2021-11-03
CVE-2021-2002898.1YES2022-03-28
CVE-2020-513597.7YES2022-03-15
CVE-2025-230069.897.6CRITICALYES2025-01-24
CVE-2024-4076697.0YES2024-09-09
CVE-2021-200227.296.7HIGHYES2021-11-03
CVE-2021-2003590.0YES2025-04-16

Recent CVEs

Most recently seen
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2026-661507.810.0HIGH2026-08-11
CVE-2026-661497.810.0HIGH2026-08-11
CVE-2026-661479.461.6CRITICAL2026-08-11
CVE-2026-661459.136.3CRITICAL2026-08-11
CVE-2026-661548.33.1HIGH2026-08-11
CVE-2026-186348.413.0HIGH2026-08-11
CVE-2026-661466.118.4MEDIUM2026-08-11
CVE-2026-661486.364.9MEDIUM2026-08-11
CVE-2026-661515.51.5MEDIUM2026-08-07
CVE-2026-05166.510.8MEDIUM2026-08-05
CVE-2026-154107.299.5HIGHYES2026-07-14
CVE-2026-1540910.099.4CRITICALYES2026-07-14
CVE-2025-4060280.3YES2025-12-17
CVE-2023-4422199.5YES2025-05-01
CVE-2021-2003590.0YES2025-04-16

Products

This vendor's products with a reference page (≥2 disclosures), by CVE count. A monolithic vendor total dilutes signal; product pages sharpen it.

Products (by CVE count)
ProductCVEsKEV
GMS60
Email Security53
SonicOS43
SMA100033
SMA10022
SMA100 Appliances22

KEV entries

CISA Known Exploited Vulnerabilities (newest addition first)
CVEKEV addedCVSSEPSS %ileSeverity
CVE-2026-154102026-07-147.299.5HIGH
CVE-2026-154092026-07-1410.099.4CRITICAL
CVE-2025-406022025-12-1780.3
CVE-2023-442212025-05-0199.5
CVE-2021-200352025-04-1690.0
CVE-2024-537042025-02-189.899.9CRITICAL
CVE-2025-230062025-01-249.897.6CRITICAL
CVE-2024-407662024-09-0997.0
CVE-2019-74832022-03-2889.6
CVE-2021-200282022-03-2898.1
CVE-2020-51352022-03-1597.7
CVE-2021-200382022-01-28100.0
CVE-2021-200232021-11-034.998.8MEDIUM
CVE-2021-200222021-11-037.296.7HIGH
CVE-2021-200212021-11-039.899.7CRITICAL
CVE-2021-200162021-11-039.898.4CRITICAL
CVE-2019-74812021-11-037.5100.0HIGH

KEV timing

Longest unpatched (KEV due date passed)
CVEDueDays over
CVE-2021-200162021-11-171736
CVE-2021-200212021-11-171736
CVE-2021-200222021-11-171736
CVE-2021-200232021-11-171736
CVE-2021-200382022-02-111650
CVE-2020-51352022-04-051597
CVE-2021-200282022-04-181584
CVE-2019-74832022-04-181584
CVE-2019-74812022-05-031569
CVE-2024-407662024-09-30688

Methodology

Rate statistics are arithmetic over published figures: KEV/100 = KEV entries ÷ CVEs × 100; medians are taken over this vendor's disclosures. Vendor names are normalized (case, punctuation, common aliases) before aggregation; monthly counts are keyed to first-seen day, the day this archive first observed the record, not the upstream publication date.

Raw counts are not comparable across vendors: disclosure practices, product breadth, and CNA conventions differ widely, so a larger number here does not mean less secure software. This is a reference page assembled from the public record — not a record of its own, and not a ranking of vendors by our judgment.

Sources. CVE records from the CVE Program (cvelistV5); enrichment from NVD (NIST); known-exploited status from the CISA KEV catalog; exploit probability from FIRST EPSS.