H-ISAC TLP White Vulnerability Bulletins TLP White Critical Vulnerability in WatchGuard Firebox Firewalls (CVE-2025-9242)

On September 17, 2025, WatchGuard released a security advisory regarding a critical vulnerability, tracked as CVE-2025-9242.

The security flaw affects an integral process of WatchGuard Fireware OS, which powers WatchGuard Firebox firewall appliances. Successful exploitation of the vulnerability allows remote unauthenticated attackers to execute arbitrary code on affected Firebox devices with specific configurations.

Health-ISAC provides this information to increase situational awareness and encourage organizations to assess their level of risk to this vulnerability. WatchGuard has released patches to address this issue, and all affected organizations are strongly advised to apply the recommended updates immediately to prevent potential exploitation.

View the detailed bulletin below.

For help with Cybersecurity and Risk Advisory Services exclusively for AHA members, contact:

John Riggi

National Advisor for Cybersecurity and Risk, AHA

jriggi@aha.org

(O) +1 202 626 2272