EDR Core (Total Security Suite) Release Notes

For more information about new features, go to the What's New in WatchGuard Endpoint Security PowerPoint. Friends & Family testing involves a small number of invited partners and helps us to validate a release, collect feedback, and uncover bugs ahead of general availability. To participate in Friends & Family testing, send an email to the Friends & Family mailbox.

For information on EDR Core installation requirements, go to WatchGuard Endpoint Security Installation Requirements.

Release Information Date
Latest Endpoint Security Update 4 May 2026
Release Notes Revision Date 4 May 2026

Protection and Agent Versions for WatchGuard EDR Core 4.70.00

  • Windows protection: 8.00.26.0001
  • macOS protection: 3.08.00.0001
  • Linux protection: 3.08.00.0001
  • Android agent and protection: 3.13.6
  • iOS agent and protection: 2.02.04
  • Windows agent: 1.25.03.0000
  • macOS agent: 1.17.01.0000
  • Linux agent: 1.17.00.0000

WatchGuard periodically updates Endpoint Security products and modules to provide enhancements and resolve reported issues. New versions roll out gradually to accounts. Some features and enhancements listed here might not be available to your account. When a new version is available, upgrade notifications appear as alerts in the upper-right corner of the management UI. If an upgrade is available, we recommend that you upgrade to the most recent version. If there is no alert in the management UI and you need to upgrade to the latest version of the product, contact your WatchGuard representative to request an upgrade. For more information, go to the Knowledge Base article: WatchGuard Endpoint Security Upgrade Schedule.

Latest Release

Release Date: 4 May 2026

Enhancements

  • End users without the require permissions can no longer retry actions from the initial installation window. EDR Core will retry the action automatically after a period of time.

Resolved Issues

  • This release resolved an issue where the installer did not request privilege elevation in certain cases, which prevented the application of necessary settings.
  • This release resolved the CVE-2026-41286 vulnerability, which could cause the WatchGuard Agent to crash when it received invalid communications.
  • This release resolved the CVE-2026-41287 vulnerability, which could cause the WatchGuard Agent to crash when it processed certain messages.
  • This release resolved the CVE-2026-41288 vulnerability, which could enable a local user to gain elevated privileges in the system.
  • This release resolved the CVE-2026-6787 vulnerability, which could enable the execution of processes with elevated privileges on the system.
  • This release resolved the CVE-2026-6788 vulnerability, which could enable unauthorized users to gain elevated privileges on the system.

Previous Releases