A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and redirect firewall management users to arbitrary web domains.
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0009