Check Point is warning its users over the active exploitation of CVE-2026-85102, a severe vulnerability in its Security Gateway product. This critical pre-authentication remote code execution flaw exists in the VPNs certificate-handling functionality. According to BleepingComputer , Check Point released a security bulletin confirming that threat actors have been actively exploiting this gap to conduct unauthorized attacks.