Brazil warns on CVE-2024-24919 in VPNs
CERT.br warned of active exploitation of CVE-2024-24919 in enterprise VPNs used in Brazil and urged immediate patching.
CERT.br issued an alert on July 22, 2026, about critical vulnerabilities in enterprise VPNs under active exploitation, with a focus on devices widely used in Brazil. It specifically cited CVE-2024-24919 in Check Point equipment, with reports of compromises already emerging in Brazilian organizations.
CERT.br published an alert on July 22, 2026, warning about critical vulnerabilities in enterprise VPNs that are being actively exploited. The agency said attackers are taking advantage of recent CVEs in devices widely used in Brazil to reach corporate networks.
CVE-2024-24919 under active exploitation
In that alert, the Brazilian center specifically called out active exploitation of CVE-2024-24919 in Check Point VPN devices. According to the agency, there are already reports of compromise in Brazilian organizations, and the recommendation is to apply the vendor's patches immediately.
CERT.br also said CVE-2024-24919 allows unauthenticated attackers to read sensitive information from the memory of affected VPN gateways. According to the alert, the flaw is being used in targeted attacks against critical infrastructure and service companies in Brazil.
Vendor response
Check Point later issued a security advisory confirming that CVE-2024-24919 is being actively exploited in the wild. The vendor released software updates and mitigations, in line with the warning from CERT.br for organizations using these devices.
Signals from the local market
The concern also reached technology and security media in Brazil. Convergência Digital reported that several local companies have had security incidents allegedly linked to exploitation of CVE-2024-24919 in their VPN solutions, citing both the Check Point advisory and the CERT.br alert as main references.
Taken together, the two sources describe enterprise VPNs as one of the most sensitive points for Brazilian organizations that rely on these devices for remote access to corporate networks.
Sources
- Empresas brasileiras são alvo de ataques explorando falha crítica em VPNs (CVE-2024-24919)convergenciadigital.com.br· Convergência DigitalUnverified URL



