WatchGuard VPN Bug Lets Remote Code Exec (CVE-2025-9242)

In September 2025, WatchGuard disclosed a critical vulnerability in its Fireware OS labeled CVE-2025-9242, which affects the IKEv2 component of its VPN infrastructure. The flaw is an out-of-bounds write in the iked process and may permit a remote unauthenticated attacker…








