Check Point disclosed CVE-2026-85102, a critical pre-authentication remote code execution vulnerability in its Security Gateway VPN product that allows attackers to execute arbitrary code via malicious certificates. Threat actors are actively exploiting the flaw in the wild, and the company has released patches urging immediate updates to prevent widespread data breaches and system compromise.