The U.S. Cybersecurity and Infrastructure Security Agency (CISA) directs federal agencies to remediate a critical vulnerability in certain Check Point Remote Access VPN and Mobile Access products that is being exploited in real-world attacks. Multiple outlets report that the flaw is identified as CVE-2026-50751 and that attackers are using it to obtain unauthorized remote access. According to coverage citing incident reporting by Check Point, the exploitation has impacted dozens of organizations, including entities using the affected products across government environments.

One report says CISA requires agencies to implement fixes within three days, while another frames the deadline as “24 hours” for several agencies, with a stated compliance date of June 11. The notices emphasize the risk to federal networks and treat the issue as an active exploitation scenario rather than a newly disclosed flaw.

Several sources also connect some attacks to Qilin ransomware activity and describe exploitation by ransomware affiliates. In response, agencies are instructed to patch or otherwise mitigate the affected systems and deployments covered by CISA’s directive.