SonicWall SMA1000 Appliances contain a server-side request forgery (SSRF) vulnerability tracked as CVE-2026-83548. The flaw allows remote unauthenticated attackers to gain unauthorized access to sensitive functionality and perform unauthorized operations. CISA has flagged this vulnerability under BOD 26-04, which prioritizes security updates based on risk. SonicWall has published an advisory via its PSIRT portal. The vulnerability is rated high severity given its unauthenticated remote exploitation potential. Federal agencies and organizations using SMA1000 appliances are urged to apply patches promptly. CISA also references forensic triage requirements as part of the BOD 26-04 implementation guidance. The NVD entry provides additional technical details on the vulnerability.