Other security products
CVE-2026-23708: Improper authentication in FortiSOAR PaaS, FortiSOAR on-premise
A improper authentication vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.3, FortiSOAR PaaS 7.5.0 through 7.5.2, FortiSOAR on-premise 7.6.0 through 7.6.3, FortiSOAR on-premise 7.5.0 through 7.5.2 may allow an unauthenticated attacker to bypass authentication via replaying captured 2FA request.
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| FortiSOAR PaaS 7.6.0 to 7.6.3 | 7.6.4 or later |
| FortiSOAR PaaS 7.5.0 to 7.5.2 | 7.5.3 (upcoming) or later |
| FortiSOAR on-premise 7.6.0 to 7.6.3 | 7.6.4 or later |
| FortiSOAR on-premise 7.5.0 to 7.5.2 | 7.5.3 (upcoming) or later |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
A improper authentication vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.3, FortiSOAR PaaS 7.5.0 through 7.5.2, FortiSOAR on-premise 7.6.0 through 7.6.3, FortiSOAR on-premise 7.5.0 through 7.5.2 may allow an unauthenticated attacker to bypass authentication via replaying captured 2FA request. The attack requires being able to intercept and decrypt authentication traffic and precise timing to replay the request before token expiration, which raises the attack complexity.
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.