Documented CVEs
4 vulnerabilities cataloged in the Hermes intelligence repository.
| Parameter | Technical Specification |
|---|---|
| Official Name | Check Point Quantum Security Gateway (Gaia OS) |
| Vendor / Project | checkpoint |
| Canonical ID | checkpoint:gaia |
| Versioning Scheme | generic |
| CPE Identifiers | cpe:2.3:o:checkpoint:gaia_os:*:*:*:*:*:*:*:* |
| Overall Posture | CRITICAL |
| Recommended Safe Release | R82-Take-126 |
Documented CVEs
4 vulnerabilities cataloged in the Hermes intelligence repository.
CISA KEV Entries
2 flaws with confirmed active in-the-wild exploitation.
Weaponized Exploits
4 vulnerabilities with publicly available PoCs or weaponized exploit tooling.
Remediation Target
Recommended upgrade to R82-Take-126 to neutralize known flaws.
Progression of Hermes Threat Score (HTS) posture and maximum EPSS probability over the last 30 days:
0 / 100
= Stable over 30d
100.0 %
= Stable over 30d
1
Active in-the-wild exploitation
| CVE | CVSS Score | EPSS Probability | CISA KEV | Affected Versions | Fixed In | Hermes Analysis |
|---|---|---|---|---|---|---|
| CVE-2026-85102 | 9.8 (CRITICAL) | 0.7% | CISA KEV | All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions | R82.20, R82.10-Take-44, R82-Take-126, R81.20-Take-166, LivePatch-Take-24 | Analysis β |
| CVE-2026-85103 | 9.8 (CRITICAL) | 0.4% | No | All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions, All versions | R82.20, R82.10-Take-44, R82-Take-126, R81.20-Take-166, LivePatch-Take-24 | Analysis β |
| CVE-2026-91843 | 9.8 (CRITICAL) | 0.5% | No | vAll supported production branches to vCheck Point Gaia R82 prior to Take 22 | - | Analysis β |
| CVE-2024-24919 | 8.6 (HIGH) | 100.0% | CISA KEV | All versions, All versions, All versions, All versions | R80.40-Take-294, R81-Take-77, R81.10-Take-335, R81.20-Take-84 | - |
Vulnerabilities impacting Check Point Quantum Security Gateway (Gaia OS) are actively leveraged in real-world intrusion campaigns:
Are you operating Check Point Quantum Security Gateway (Gaia OS) in your infrastructure? Inspect your running build to evaluate applicability, confidence score, and security deltas: