Forcepoint disclosed a security policy bypass vulnerability in its Security Engine for next-generation firewalls, tracked as CVE-2026-12974. The Canadian Centre for Cyber Security issued advisory AV26-960 covering the issue, although its notice did not provide a severity rating, technical details, indicators of compromise, or evidence of active exploitation.
Affected releases include Forcepoint Security Engine (NGFW) versions 7.1.0 through 7.1.13, 7.3.0 through 7.3.1, 7.3.3, 7.4.0 through 7.4.1, and 7.5.0. Organizations using these versions should review Forcepoint's advisory and apply vendor-provided updates as they become available.

Map this exposure pattern across your cloud, code, and identities.
1 event from the most recent confirmed update back to the earliest known activity.
The Canadian Centre for Cyber Security published advisory AV26-960 for a security-policy-bypass vulnerability in Forcepoint Security Engine (NGFW), identified by Forcepoint as CVE-2026-12974. The advisory lists affected releases 7.1.0–7.1.13, 7.3.0–7.3.1, 7.33, 7.4.0–7.4.1, and 7.5.0, and advises administrators to review Forcepoint guidance and apply updates when available.
See where this exposure pattern shows up across your cloud, code, supply chain, and non-human identities.
3 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourcecyber.gc.ca
Open sourcesupport.forcepoint.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.