Cybersecurity researchers have disclosed a critical zero-day vulnerability in a widely deployed enterprise VPN product that could allow attackers to execute arbitrary code on affected servers. The vendor has released an emergency patch and is urging immediate updates.

The vulnerability affects an estimated 30,000 organizations worldwide, including government agencies, financial institutions, and healthcare providers. Security firms report that exploitation attempts were detected in the wild before the patch was available.

Incident response teams are advising affected organizations to apply the patch immediately, rotate VPN credentials, and audit access logs for signs of unauthorized entry during the exposure window.