Vendor
Fortinet vulnerabilities
356 advisories tracked, 31 exploited in the wild according to CISA, 106 published in 2026.
Data refreshed 10 Oct 2026
Patch now
Exploited in the last two years (CISA KEV), or a 10%+ chance of exploitation in the next 30 days (EPSS).
CVE-2026-104286FortiMail
FortiMail Path TraversalCVE-2025-25249FortiOS
Heap-based buffer overflow in FortiOS, FortiSwitchManagerCVE-2025-68686FortiOS
FortiOS Exposure of Sensitive Information to an Unauthorized ActorCVE-2026-25089FortiSandbox
FortiSandbox OS Command InjectionCVE-2026-39808FortiSandbox
FortiSandbox OS Command InjectionCVE-2026-21643FortiClient and EMS
FortiClient EMS SQL Injection
Show all 30Show fewer
CVE-2026-35616FortiClient and EMS
FortiClient EMS Improper Access ControlCVE-2026-24858FortiOS
Authentication Bypass Using an Alternate Path or Channel in FortiOS, FortiProxy and othersCVE-2025-64155FortiSIEM
OS command injection in FortiSIEMCVE-2025-59718FortiOS
Improper verification of cryptographic signature in FortiOS, FortiProxy and othersCVE-2025-59719FortiWeb
Improper verification of cryptographic signature in FortiWebCVE-2025-53679FortiSandbox
OS command injection in FortiSandbox, FortiSandbox CloudCVE-2025-53949FortiSandbox
OS command injection in FortiSandboxCVE-2025-58034FortiWeb
FortiWeb OS Command InjectionCVE-2025-64446FortiWeb
FortiWeb Path TraversalCVE-2025-52970FortiWeb
Improper handling of parameters in FortiWebCVE-2025-25256FortiSIEM
OS command injection in FortiSIEMCVE-2025-25257FortiWeb
FortiWeb SQL InjectionCVE-2019-6693FortiOS
FortiOS Use of Hard-Coded CredentialsCVE-2025-32756FortiMail
Stack-based buffer overflow in FortiMail, FortiVoice and othersCVE-2024-48887Other security products
Unverified password change in FortiSwitchCVE-2025-25254FortiWeb
Path traversal in FortiWebCVE-2023-25610FortiOS
Buffer underflow in FortiSwitchManager, FortiAnalyzer and othersCVE-2025-24472FortiOS
FortiOS and FortiProxy Authentication BypassCVE-2023-33300FortiNAC
Command injection in FortiNACCVE-2024-54018FortiSandbox
Multiple improper neutralization of special elements used in an OS Command in FortiSandboxCVE-2024-27781FortiSandbox
Cross-site scripting in FortiSandboxCVE-2024-48884FortiOS
Path traversal in FortiManager, FortiProxy and othersCVE-2024-55591FortiOS
FortiOS and FortiProxy Authentication BypassCVE-2024-47575FortiManager and FortiAnalyzer
FortiManager Missing Authentication
Products covered
Select a product to see only its advisories.
- FortiOSFortiGate firewalls, SSL-VPN and IPsec VPN107 tracked
- FortiProxySecure web gateway and proxy61 tracked
- FortiManager and FortiAnalyzerCentral management and logging58 tracked
- FortiWebWeb application firewall40 tracked
- FortiMailEmail security gateway13 tracked
- FortiClient and EMSEndpoint agent, VPN client and its management server36 tracked
- FortiSandboxMalware sandbox29 tracked
- FortiSIEMSecurity information and event management15 tracked
- FortiNACNetwork access control4 tracked
- Other security productsFortiSOAR, FortiNDR, FortiDLP, FortiSwitchManager, FortiADC, FortiAuthenticator, FortiPAM and more115 tracked
All tracked advisories
Newest first. Full analysis marks the CVEs we've written up in depth; the rest link to an automatic summary.
| Published | CVE | Product | Issue | Severity | EPSS | Exploited |
|---|---|---|---|---|---|---|
| CVE-2026-104286Full analysis | FortiMail | FortiMail Path Traversal | CRITICAL 9.8 | 2.2% | Yes | |
| CVE-2026-84388 | Other security products | Improper restriction of rendered ui layers or frames in FortiPAM Chrome Extension | CRITICAL 9.1 | 0.38% | – | |
| CVE-2026-84392 | FortiOS | NULL Pointer Dereference in FortiOS, FortiProxy and others | LOW 2.5 | 0.50% | – | |
| CVE-2026-22575 | FortiManager and FortiAnalyzer | Improper access control in FortiManager, FortiManager Cloud | MEDIUM 4.7 | 0.24% | – | |
| CVE-2026-84391 | FortiManager and FortiAnalyzer | Use of uninitialized variable in FortiAnalyzer | MEDIUM 5.9 | 0.41% | – | |
| CVE-2026-84393 | FortiOS | Improper validation of certificate with host mismatch in FortiOS, FortiProxy | HIGH 7.3 | 0.25% | – | |
| CVE-2026-26084 | FortiSandbox | Improper access control in FortiSandbox PaaS, FortiSandbox and others | HIGH 8.9 | 0.39% | – | |
| CVE-2026-84385 | Other security products | Improper access control in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 4.9 | 0.23% | – | |
| CVE-2026-84389 | FortiSIEM | Open redirect in FortiSIEM | LOW 2.8 | 0.22% | – | |
| CVE-2026-84387 | FortiSandbox | Command injection in FortiSandbox | MEDIUM 6.7 | 1.4% | – | |
| CVE-2026-84386 | FortiClient and EMS | Unverified ownership in FortiClientWindows | MEDIUM 4.7 | 0.14% | – | |
| CVE-2026-70468 | FortiManager and FortiAnalyzer | Authentication bypass using an alternate path or channel in FortiManager, FortiManager Cloud | HIGH 7.3 | 0.46% | – | |
| CVE-2026-26035 | FortiWeb | Improper Authentication in FortiWeb | HIGH 8.8 | 0.75% | – | |
| CVE-2026-70466 | FortiOS | Incomplete list of disallowed inputs in FortiWeb, FortiOS | MEDIUM 4.8 | 0.31% | – | |
| CVE-2026-71407 | FortiOS | Stack-based Buffer Overflow in FortiOS, FortiPAM and others | MEDIUM 5.1 | 0.42% | – | |
| CVE-2026-70467 | FortiSIEM | Server-side request forgery (ssrf) in FortiSIEM | LOW 3.4 | 0.26% | – | |
| CVE-2026-71408 | FortiOS | Allocation of resources without limits or throttling in FortiOS | MEDIUM 5 | 0.40% | – | |
| CVE-2026-70465 | FortiClient and EMS | Classic buffer overflow in FortiClientWindows | HIGH 7.3 | 0.52% | – | |
| CVE-2026-59838 | FortiSIEM | Improper neutralization of script-related html tags in a web page (basic xss) in FortiSIEM | MEDIUM 5.3 | 0.24% | – | |
| CVE-2026-59840 | FortiOS | Buffer over-read in FortiOS, FortiPAM and others | MEDIUM 4.1 | 0.31% | – | |
| CVE-2025-43892 | FortiOS | Buffer over-read in FortiOS | MEDIUM 4.1 | 0.38% | – | |
| CVE-2026-23573 | FortiOS | Cross-site scripting in FortiOS, FortiProxy and others | MEDIUM 6.1 | 0.39% | – | |
| CVE-2026-59839 | FortiOS | Path traversal in FortiProxy, FortiOS and others | MEDIUM 5 | 0.25% | – | |
| CVE-2025-62826 | FortiOS | HTTP response splitting in FortiPAM, FortiProxy and others | LOW 3.1 | 0.37% | – | |
| CVE-2025-62675 | FortiOS | HTTP response splitting in FortiOS, FortiPAM and others | LOW 3.4 | 0.27% | – | |
| CVE-2026-59836 | FortiClient and EMS | Improper certificate validation in FortiClientEMS | MEDIUM 6.7 | 0.22% | – | |
| CVE-2026-59841 | FortiSIEM | Improper restriction of communication channel to intended endpoints in FortiSIEMWindowsAgent | MEDIUM 6.9 | 0.24% | – | |
| CVE-2025-53379 | Other security products | Out-of-bounds read in FortiAuthenticator | HIGH 7 | 0.53% | – | |
| CVE-2026-59835 | FortiSandbox | Exposure of resource to wrong sphere in FortiSandbox | HIGH 7.7 | 0.40% | – | |
| CVE-2026-59837 | FortiOS | Stack-based buffer overflow in FortiPAM, FortiSASE and others | MEDIUM 5.9 | 0.67% | – | |
| CVE-2025-67862 | FortiOS | Internal Asset Exposed to Unsafe Debug Access Level or State in FortiOS, FortiProxy | MEDIUM 6 | 0.15% | – | |
| CVE-2026-25089 | FortiSandbox | FortiSandbox OS Command Injection | CRITICAL 9.1 | 76% | Yes | |
| CVE-2026-49938 | FortiManager and FortiAnalyzer | Improper access control in FortiPortal | MEDIUM 6.2 | 0.34% | – | |
| CVE-2025-53870 | Other security products | OS command injection in FortiAP, FortiAP-W2 | MEDIUM 6.5 | 0.56% | – | |
| CVE-2025-53680 | Other security products | OS command injection in FortiAP-U, FortiAP-W2 and others | MEDIUM 6.1 | 0.56% | – | |
| CVE-2025-67604 | FortiManager and FortiAnalyzer | Use of potentially dangerous function in FortiAnalyzer, FortiManager | MEDIUM 5.2 | 0.42% | – | |
| CVE-2025-53681 | FortiMail | SQL injection& in FortiMail | MEDIUM 6.3 | 0.36% | – | |
| CVE-2026-25690 | Other security products | Argument injection in FortiDeceptor | MEDIUM 4 | 0.33% | – | |
| CVE-2025-53844 | FortiOS | Out-of-bounds write in FortiOS | HIGH 8.3 | 0.56% | – | |
| CVE-2026-44278 | FortiClient and EMS | Use of hard-coded cryptographic key in FortiClientWindows | LOW 2.1 | 0.14% | – | |
| CVE-2026-25088 | Other security products | SQL injection in FortiNDR | MEDIUM 5.1 | 0.26% | – | |
| CVE-2026-44277 | Other security products | Improper access control in FortiAuthenticator | CRITICAL 9.1 | 0.48% | – | |
| CVE-2026-26083 | FortiSandbox | Missing authorization in FortiSandbox, FortiSandbox PaaS and others | CRITICAL 9.1 | 0.50% | – | |
| CVE-2026-40688 | FortiWeb | Out-of-bounds write in FortiWeb | MEDIUM 6.7 | 0.88% | – | |
| CVE-2025-61624 | FortiOS | Path traversal in FortiOS, FortiProxy and others | MEDIUM 5.4 | 0.50% | – | |
| CVE-2025-68649 | FortiManager and FortiAnalyzer | Path traversal in FortiManager Cloud, FortiManager and others | MEDIUM 5.4 | 0.41% | – | |
| CVE-2026-21741 | FortiNAC | Open redirect in FortiNAC-F | LOW 2.2 | 0.21% | – | |
| CVE-2026-39813 | FortiSandbox | '../filedir' in FortiSandbox, FortiSandbox Cloud | CRITICAL 9.1 | 0.72% | – | |
| CVE-2025-61848 | FortiManager and FortiAnalyzer | SQL injection in FortiManager, FortiAnalyzer and others | MEDIUM 6.5 | 0.51% | – | |
| CVE-2026-22828 | FortiManager and FortiAnalyzer | Heap-based buffer overflow in FortiAnalyzer Cloud, FortiManager Cloud | HIGH 7.3 | 0.90% | – | |
| CVE-2026-39815 | Other security products | SQL injection in FortiDDoS-F | HIGH 7.9 | 0.51% | – | |
| CVE-2026-22573 | Other security products | Path traversal in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 6.2 | 0.42% | – | |
| CVE-2025-61886 | FortiSandbox | Cross-site scripting in FortiSandbox PaaS, FortiSandbox | MEDIUM 4.9 | 0.27% | – | |
| CVE-2026-39810 | FortiClient and EMS | Use of hard-coded cryptographic key in FortiClientEMS | MEDIUM 5.2 | 0.15% | – | |
| CVE-2026-39811 | FortiWeb | Integer overflow or wraparound in FortiWeb | MEDIUM 4.4 | 0.44% | – | |
| CVE-2024-23104 | Other security products | Exposure of sensitive information to an unauthorized actor in FortiVoice, FortiNDR | MEDIUM 5.4 | 0.26% | – | |
| CVE-2026-39812 | FortiSandbox | Cross-site scripting in FortiSandbox, FortiSandbox PaaS | MEDIUM 4.3 | 0.24% | – | |
| CVE-2026-23708 | Other security products | Improper authentication in FortiSOAR PaaS, FortiSOAR on-premise | MEDIUM 6.7 | 0.28% | – | |
| CVE-2026-39814 | FortiWeb | Relative path traversal in FortiWeb | MEDIUM 6.2 | 0.19% | – | |
| CVE-2026-25691 | FortiSandbox | Path traversal in FortiSandbox PaaS, FortiSandbox Cloud and others | MEDIUM 6.2 | 0.47% | – | |
| CVE-2025-59809 | Other security products | Server-side request forgery (ssrf) in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 4.1 | 0.20% | – | |
| CVE-2026-22155 | Other security products | Cleartext transmission of sensitive information in FortiSOAR PaaS, FortiSOAR on-premise | MEDIUM 6.2 | 0.17% | – | |
| CVE-2026-21742 | Other security products | Cleartext transmission of sensitive information in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 5.4 | 0.15% | – | |
| CVE-2026-22574 | Other security products | Storing passwords in a recoverable format in FortiSOAR PaaS, FortiSOAR on-premise | MEDIUM 4.1 | 0.27% | – | |
| CVE-2026-22154 | Other security products | Cross-site scripting in FortiSOAR PaaS, FortiSOAR on-premise | MEDIUM 4.4 | 0.22% | – | |
| CVE-2025-53847 | FortiOS | Missing authentication for critical function in FortiOS | MEDIUM 6.2 | 0.28% | – | |
| CVE-2026-22576 | Other security products | Storing passwords in a recoverable format in FortiSOAR PaaS, FortiSOAR on-premise | MEDIUM 4.1 | 0.26% | – | |
| CVE-2026-27316 | FortiSandbox | Insufficiently protected credentials in FortiSandbox, FortiSandbox PaaS | LOW 2.5 | 0.30% | – | |
| CVE-2026-39808 | FortiSandbox | FortiSandbox OS Command Injection | CRITICAL 9.1 | 47% | Yes | |
| CVE-2026-39809 | FortiClient and EMS | SQL injection in FortiClientEMS | MEDIUM 6.2 | 0.20% | – | |
| CVE-2026-35616 | FortiClient and EMS | FortiClient EMS Improper Access Control | CRITICAL 9.1 | 9.1% | Yes | |
| CVE-2025-66178 | FortiWeb | OS command injection in FortiWeb | MEDIUM 6.7 | 1.7% | – | |
| CVE-2026-24641 | FortiWeb | NULL Pointer Dereference in FortiWeb | LOW 2.5 | 0.40% | – | |
| CVE-2026-24640 | FortiWeb | Stack-based Buffer Overflow in FortiWeb | MEDIUM 5.9 | 0.66% | – | |
| CVE-2025-54659 | Other security products | Path traversal in FortiSOAR Agent Communication Bridge | MEDIUM 5.5 | 0.48% | – | |
| CVE-2026-24017 | FortiWeb | Improper Control of Interaction Frequency in FortiWeb | HIGH 7.3 | 0.79% | – | |
| CVE-2026-25972 | FortiSIEM | Cross-site scripting in FortiSIEM | MEDIUM 4.1 | 0.34% | – | |
| CVE-2026-22629 | FortiManager and FortiAnalyzer | Improper restriction of excessive authentication attempts in FortiAnalyzer, FortiManager Cloud and others | LOW 3.4 | 0.38% | – | |
| CVE-2025-68482 | FortiManager and FortiAnalyzer | Improper certificate validation in FortiAnalyzer, FortiManager and others | MEDIUM 6.3 | 0.19% | – | |
| CVE-2025-48418 | FortiManager and FortiAnalyzer | Hidden functionality in FortiAnalyzer, FortiAnalyzer Cloud and others | MEDIUM 6.4 | 0.54% | – | |
| CVE-2025-49784 | FortiManager and FortiAnalyzer | SQL injection in FortiAnalyzer-BigData, FortiAnalyzer | MEDIUM 5.6 | 0.46% | – | |
| CVE-2026-22572 | FortiManager and FortiAnalyzer | Authentication bypass using an alternate path or channel in FortiManager, FortiAnalyzer | MEDIUM 6.8 | 0.58% | – | |
| CVE-2025-68648 | FortiManager and FortiAnalyzer | Use of externally-controlled format string in FortiManager Cloud, FortiAnalyzer Cloud and others | MEDIUM 6.5 | 0.59% | – | |
| CVE-2026-25689 | Other security products | Argument injection in FortiDeceptor | MEDIUM 6 | 0.60% | – | |
| CVE-2025-53608 | FortiSandbox | Cross-site scripting in FortiSandbox | MEDIUM 4.6 | 0.32% | – | |
| CVE-2026-24018 | FortiClient and EMS | UNIX symbolic link (Symlink) following in FortiClientLinux | HIGH 7.4 | 0.24% | – | |
| CVE-2025-48840 | FortiWeb | Authentication bypass by spoofing in FortiWeb | MEDIUM 5 | 0.48% | – | |
| CVE-2025-54820 | FortiManager and FortiAnalyzer | Stack-based Buffer Overflow in FortiManager | HIGH 7 | 0.89% | – | |
| CVE-2025-55717 | FortiMail | Cleartext storage of sensitive information in FortiVoice, FortiMail and others | LOW 3.8 | 0.08% | – | |
| CVE-2026-25836 | FortiSandbox | OS command injection in FortiSandbox Cloud, FortiSandbox PaaS | MEDIUM 6.7 | 1.6% | – | |
| CVE-2026-30897 | FortiWeb | Stack-based buffer overflow in FortiWeb | MEDIUM 5.9 | 0.70% | – | |
| CVE-2025-62439 | FortiOS | Improper Verification of Source of a Communication Channel in FortiOS | LOW 3.8 | 0.16% | – | |
| CVE-2025-62676 | FortiClient and EMS | Link following in FortiClientWindows | MEDIUM 6.4 | 0.24% | – | |
| CVE-2025-68686 | FortiOS | FortiOS Exposure of Sensitive Information to an Unauthorized Actor | MEDIUM 5.3 | 29% | Yes | |
| CVE-2025-64157 | FortiOS | Use of externally-controlled format string in FortiOS | MEDIUM 6.7 | 1.5% | – | |
| CVE-2025-55018 | FortiOS | HTTP request smuggling in FortiOS | MEDIUM 5.2 | 0.40% | – | |
| CVE-2026-22153 | FortiOS | Authentication Bypass by Primary Weakness in FortiOS | HIGH 7.5 | 0.76% | – | |
| CVE-2026-21743 | Other security products | Missing authorization in FortiAuthenticator | MEDIUM 6.8 | 0.38% | – | |
| CVE-2025-52436 | FortiSandbox | Cross-site scripting in FortiSandbox | HIGH 7.9 | 7.3% | – | |
| CVE-2026-21643 | FortiClient and EMS | FortiClient EMS SQL Injection | CRITICAL 9.1 | 94% | Yes | |
| CVE-2026-24858Full analysis | FortiOS | Authentication Bypass Using an Alternate Path or Channel in FortiOS, FortiProxy and others | CRITICAL 9.4 | 86% | Yes | |
| CVE-2025-25249Full analysis | FortiOS | Heap-based buffer overflow in FortiOS, FortiSwitchManager | HIGH 7.4 | 3.8% | Yes | |
| CVE-2025-67685 | FortiSandbox | Server-Side Request Forgery (SSRF) in FortiSandbox | LOW 3.4 | 0.42% | – | |
| CVE-2025-58693 | Other security products | Path traversal in FortiVoice | MEDIUM 5.7 | 0.67% | – | |
| CVE-2025-59922 | FortiClient and EMS | SQL injection in FortiClientEMS | MEDIUM 6.8 | 7.8% | – | |
| CVE-2025-64155 | FortiSIEM | OS command injection in FortiSIEM | CRITICAL 9.4 | 43% | – | |
| CVE-2024-40593 | FortiOS | Key management errors in FortiAnalyzer, FortiPortal and others | MEDIUM 5.9 | 0.11% | – | |
| CVE-2024-47570 | FortiOS | Insertion of sensitive information into log file in FortiSASE, FortiProxy and others | MEDIUM 6.3 | 0.40% | – | |
| CVE-2025-59718 | FortiOS | Improper verification of cryptographic signature in FortiOS, FortiProxy and others | CRITICAL 9.1 | 68% | Yes | |
| CVE-2025-59719 | FortiWeb | Improper verification of cryptographic signature in FortiWeb | CRITICAL 9.1 | 29% | – | |
| CVE-2025-53679 | FortiSandbox | OS command injection in FortiSandbox, FortiSandbox Cloud | MEDIUM 6.9 | 12% | – | |
| CVE-2025-54353 | FortiSandbox | Cross-site scripting in FortiSandbox | MEDIUM 5.3 | 6.3% | – | |
| CVE-2025-53949 | FortiSandbox | OS command injection in FortiSandbox | HIGH 7 | 17% | – | |
| CVE-2025-59810 | Other security products | Improper access control in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 6.2 | 0.26% | – | |
| CVE-2025-59808 | Other security products | Unverified password change in FortiSOAR on-premise, FortiSOAR PaaS | MEDIUM 6.5 | 0.23% | – | |
| CVE-2025-54838 | FortiManager and FortiAnalyzer | Incorrect Authorization in FortiPortal | MEDIUM 6.4 | 0.31% | – | |
| CVE-2025-62631 | FortiOS | Insufficient session expiration in FortiOS | MEDIUM 5.3 | 0.30% | – | |
| CVE-2025-57823 | Other security products | Forced browsing in FortiAuthenticator | LOW 2.6 | 0.23% | – | |
| CVE-2025-64153 | Other security products | OS command injection in FortiExtender | MEDIUM 6.7 | 1.7% | – | |
| CVE-2025-59923 | Other security products | Improper access control in FortiAuthenticator | LOW 2.6 | 0.21% | – | |
| CVE-2025-64156 | Other security products | SQL injection in FortiVoice | MEDIUM 6.8 | 0.32% | – | |
| CVE-2025-64471 | FortiWeb | Use of password hash instead of password for authentication in FortiWeb | MEDIUM 4.4 | 0.34% | – | |
| CVE-2025-60024 | Other security products | Path traversal in FortiVoice | HIGH 7.7 | 0.46% | – | |
| CVE-2025-64447 | FortiWeb | Reliance on cookies without validation and integrity checking in FortiWeb | HIGH 7.1 | 8.4% | – | |
| CVE-2025-58412 | Other security products | Improper neutralization of script-related html tags in a web page (basic xss) in FortiADC | MEDIUM 4.2 | 0.17% | – | |
| CVE-2025-53843 | FortiOS | Stack-based buffer overflow in FortiOS | MEDIUM 6.9 | 0.59% | – | |
| CVE-2025-48839 | Other security products | Out-of-bounds Write in FortiADC | MEDIUM 6.3 | 0.36% | – | |
| CVE-2025-54821 | FortiOS | Improper Privilege Management in FortiPAM, FortiSASE and others | LOW 1.8 | 0.15% | – | |
| CVE-2025-58413 | FortiOS | Stack-based buffer overflow in FortiOS, FortiSASE | MEDIUM 6.9 | 0.32% | – | |
| CVE-2025-46215 | FortiSandbox | Improper Isolation or Compartmentalization in FortiSandbox | MEDIUM 5 | 0.32% | – | |
| CVE-2025-59669 | FortiWeb | Use of hard-coded credentials in FortiWeb | MEDIUM 4.8 | 0.12% | – | |
| CVE-2025-54660 | FortiClient and EMS | Active debug code in FortiClientWindows | MEDIUM 4.9 | 0.15% | – | |
| CVE-2025-61713 | Other security products | Cleartext Storage of Sensitive Information in Memory in FortiPAM | LOW 3.8 | 0.11% | – | |
| CVE-2025-46776 | Other security products | Classic buffer overflow in FortiExtender | MEDIUM 6.3 | 0.15% | – | |
| CVE-2025-46775 | Other security products | Debug messages revealing unnecessary information in FortiExtender | MEDIUM 5.2 | 0.16% | – | |
| CVE-2025-54971 | Other security products | Exposure of sensitive information to an unauthorized actor in FortiADC | LOW 3.9 | 0.23% | – | |
| CVE-2025-54972 | FortiMail | Crlf injection in FortiMail | LOW 3.9 | 0.20% | – | |
| CVE-2025-46373 | FortiClient and EMS | Heap-based Buffer Overflow in FortiClientWindows | HIGH 7.1 | 0.15% | – | |
| CVE-2025-58692 | Other security products | SQL injection in FortiVoice | HIGH 7.7 | 0.32% | – | |
| CVE-2025-58034 | FortiWeb | FortiWeb OS Command Injection | MEDIUM 6.7 | 56% | Yes | |
| CVE-2025-47761 | FortiClient and EMS | Exposed IOCTL with Insufficient Access Control in FortiClientWindows | HIGH 7.1 | 0.16% | – | |
| CVE-2025-64446Full analysis | FortiWeb | FortiWeb Path Traversal | CRITICAL 9.4 | 92% | Yes | |
| CVE-2025-46752 | Other security products | Insertion of sensitive information into log file in FortiDLP | MEDIUM 4.2 | 0.16% | – | |
| CVE-2025-53950 | Other security products | Privacy violation in FortiDLP | MEDIUM 5.1 | 0.18% | – | |
| CVE-2025-53951 | Other security products | Path traversal in FortiDLP | MEDIUM 4.9 | 0.21% | – | |
| CVE-2025-54658 | Other security products | Path traversal in FortiDLP | HIGH 7.2 | 0.21% | – | |
| CVE-2025-31514 | FortiOS | Insertion of sensitive information into log file in FortiOS, FortiProxy | LOW 2.6 | 0.36% | – | |
| CVE-2025-46774 | FortiClient and EMS | Improper Verification of Cryptographic Signature in FortiClientMac | MEDIUM 6.8 | 0.08% | – | |
| CVE-2025-54822 | FortiOS | Improper authorization in FortiProxy, FortiOS | MEDIUM 4.2 | 0.32% | – | |
| CVE-2025-31365 | FortiClient and EMS | Code injection in FortiClientMac | MEDIUM 5.5 | 0.28% | – | |
| CVE-2025-53845 | FortiManager and FortiAnalyzer | Improper authentication in FortiAnalyzer | MEDIUM 6.2 | 0.46% | – | |
| CVE-2025-59921 | Other security products | Exposure of sensitive information to an unauthorized actor in FortiADC | MEDIUM 6.2 | 0.30% | – | |
| CVE-2024-33507 | Other security products | Insufficient session expiration in FortiIsolator | HIGH 7 | 0.39% | – | |
| CVE-2025-57716 | FortiClient and EMS | Uncontrolled Search Path Element in FortiClientWindows | MEDIUM 6 | 0.18% | – | |
| CVE-2025-25255 | FortiOS | Improperly Implemented Security Check for Standard in FortiOS, FortiProxy | MEDIUM 4.8 | 0.43% | – | |
| CVE-2025-25252 | FortiOS | Insufficient Session Expiration in FortiOS | MEDIUM 4.3 | 0.34% | – | |
| CVE-2024-26008 | FortiOS | Improper check or handling of exceptional conditions in FortiProxy, FortiPAM and others | MEDIUM 5 | 0.47% | – | |
| CVE-2024-47569 | FortiOS | Insertion of sensitive information into sent data in FortiManager Cloud, FortiTester and others | MEDIUM 4.2 | 0.47% | – | |
| CVE-2025-54973 | FortiManager and FortiAnalyzer | Race condition in FortiAnalyzer | MEDIUM 5.3 | 0.32% | – | |
| CVE-2023-46718 | FortiOS | Stack-based buffer overflow in FortiOS, FortiProxy | MEDIUM 6.3 | 0.19% | – | |
| CVE-2024-50571 | FortiOS | Heap-based buffer overflow in FortiManager, FortiOS and others | MEDIUM 6.5 | 0.54% | – | |
| CVE-2025-31366 | FortiOS | Improper Neutralization of Input During Web Page Generation in FortiSASE, FortiOS and others | MEDIUM 4.5 | 0.40% | – | |
| CVE-2025-22258 | FortiOS | Heap-based buffer overflow in FortiPAM, FortiOS and others | MEDIUM 5.7 | 0.56% | – | |
| CVE-2025-25253 | FortiOS | Improper Validation of Certificate with Host Mismatch in FortiProxy, FortiOS and others | MEDIUM 6.8 | 0.11% | – | |
| CVE-2025-57740 | FortiOS | Heap-based Buffer Overflow in FortiPAM, FortiProxy and others | MEDIUM 6.7 | 0.68% | – | |
| CVE-2025-47890 | FortiOS | URL Redirection to Untrusted Site in FortiOS, FortiProxy and others | LOW 2.5 | 0.25% | – | |
| CVE-2025-57741 | FortiClient and EMS | Incorrect Permission Assignment for Critical Resource in FortiClientMac | HIGH 7 | 0.13% | – | |
| CVE-2025-49201 | Other security products | Weak authentication in FortiPAM, FortiSwitchManager | HIGH 7.4 | 0.58% | – | |
| CVE-2025-58325 | FortiOS | Incorrect Provision of Specified Functionality in FortiOS | HIGH 7.8 | 0.29% | – | |
| CVE-2025-58324 | FortiSIEM | Improper neutralization of input during web page generation in FortiSIEM | MEDIUM 6.1 | 0.27% | – | |
| CVE-2025-58903 | FortiOS | Unchecked Return Value in FortiOS | LOW 2.5 | 0.62% | – | |
| CVE-2024-48891 | Other security products | OS command injection in FortiSOAR on-premise | MEDIUM 6.6 | 0.45% | – | |
| CVE-2025-47856 | Other security products | OS command injection in FortiVoice | HIGH 7.2 | 1.3% | – | |
| CVE-2025-22862 | FortiOS | Authentication Bypass Using an Alternate Path or Channel in FortiProxy, FortiOS | MEDIUM 6.3 | 0.25% | – | |
| CVE-2024-45325 | Other security products | OS command injection in FortiDDoS-F | MEDIUM 6.5 | 0.47% | – | |
| CVE-2025-53609 | FortiWeb | Relative Path Traversal in FortiWeb | MEDIUM 4.7 | 9.3% | – | |
| CVE-2024-48892 | Other security products | Relative path traversal in FortiSOAR | MEDIUM 6.4 | 0.40% | – | |
| CVE-2025-47857 | FortiWeb | OS command injection in FortiWeb | MEDIUM 6.5 | 0.48% | – | |
| CVE-2025-32932 | Other security products | Cross-site scripting in FortiSOAR | MEDIUM 6.2 | 0.20% | – | |
| CVE-2025-27759 | FortiWeb | OS command injection in FortiWeb | MEDIUM 6.7 | 0.45% | – | |
| CVE-2024-26009 | FortiOS | Authentication bypass using an alternate path or channel in FortiProxy, FortiOS and others | HIGH 7.9 | 0.59% | – | |
| CVE-2024-52964 | FortiManager and FortiAnalyzer | Path traversal in FortiManager | MEDIUM 5.2 | 0.63% | – | |
| CVE-2025-25248 | FortiOS | Integer Overflow or Wraparound in FortiOS, FortiPAM and others | MEDIUM 4.8 | 0.48% | – | |
| CVE-2023-45584 | FortiOS | Double free in FortiProxy, FortiOS and others | MEDIUM 6.3 | 0.59% | – | |
| CVE-2025-52970 | FortiWeb | Improper handling of parameters in FortiWeb | HIGH 7.7 | 10% | – | |
| CVE-2025-53744 | FortiOS | Incorrect privilege assignment in FortiOS | MEDIUM 6.8 | 0.64% | – | |
| CVE-2025-49813 | Other security products | OS command injection in FortiADC | MEDIUM 6.6 | 1.1% | – | |
| CVE-2025-32766 | FortiWeb | Stack-based buffer overflow in FortiWeb | MEDIUM 6.3 | 0.14% | – | |
| CVE-2025-25256 | FortiSIEM | OS command injection in FortiSIEM | CRITICAL 9.8 | 65% | – | |
| CVE-2024-40588 | FortiMail | Multiple relative path traversal in FortiCamera, FortiNDR and others | MEDIUM 4.2 | 0.18% | – | |
| CVE-2024-32124 | Other security products | Improper access control in FortiIsolator | MEDIUM 4 | 0.36% | – | |
| CVE-2024-27779 | FortiSandbox | Insufficient session expiration in FortiSandbox, FortiIsolator | MEDIUM 6.3 | 0.52% | – | |
| CVE-2025-25257 | FortiWeb | FortiWeb SQL Injection | CRITICAL 9.6 | 100% | Yes | |
| CVE-2025-24477 | FortiOS | Heap-based buffer overflow in FortiOS | MEDIUM 4 | 0.22% | – | |
| CVE-2024-52965 | FortiOS | Missing critical step in authentication in FortiOS, FortiProxy | MEDIUM 6.8 | 0.30% | – | |
| CVE-2025-24474 | FortiManager and FortiAnalyzer | SQL injection in FortiManager, FortiAnalyzer | LOW 2.6 | 0.31% | – | |
| CVE-2024-55599 | FortiOS | Improperly Implemented Security Check for Standard in FortiOS, FortiProxy | MEDIUM 4.9 | 0.40% | – | |
| CVE-2024-50568 | FortiOS | Channel accessible by non-endpoint in FortiOS, FortiProxy | MEDIUM 5.6 | 0.45% | – | |
| CVE-2025-25250 | FortiOS | Exposure of Sensitive Information to an Unauthorized Actor in FortiOS, FortiSASE | LOW 3.9 | 0.54% | – | |
| CVE-2023-29184 | FortiOS | Incomplete cleanup in FortiProxy, FortiOS | LOW 3.1 | 0.21% | – | |
| CVE-2023-48786 | FortiClient and EMS | Server-side request forgery in FortiClientEMS | MEDIUM 4.1 | 0.34% | – | |
| CVE-2025-24471 | FortiOS | Improper Certificate Validation in FortiOS | MEDIUM 6 | 0.38% | – | |
| CVE-2025-22254 | FortiOS | Improper Privilege Management in FortiOS, FortiProxy and others | MEDIUM 6.5 | 0.85% | – | |
| CVE-2025-22256 | Other security products | Improper handling of insufficient permissions or privileges in FortiPAM, FortiSRA | MEDIUM 6 | 0.37% | – | |
| CVE-2024-32119 | FortiClient and EMS | Improper authentication in FortiClientEMS | MEDIUM 4.6 | 0.33% | – | |
| CVE-2025-31104 | Other security products | OS command injection in FortiADC | HIGH 7 | 1.1% | – | |
| CVE-2025-22251 | FortiOS | Improper restriction of communication channel to intended endpoints in FortiOS | LOW 3 | 0.40% | – | |
| CVE-2024-50562 | FortiOS | Insufficient Session Expiration in FortiOS, FortiPAM and others | MEDIUM 4.4 | 1.2% | – | |
| CVE-2024-54019 | FortiClient and EMS | Improper validation of certificate with host mismatch in FortiClientWindows | MEDIUM 4.4 | 0.17% | – | |
| CVE-2024-45329 | FortiManager and FortiAnalyzer | Authorization bypass through user-controlled key in FortiPortal | LOW 3.9 | 0.32% | – | |
| CVE-2025-46777 | FortiManager and FortiAnalyzer | Insertion of sensitive information into log file in FortiPortal | LOW 2.2 | 0.24% | – | |
| CVE-2025-24473 | FortiClient and EMS | Exposure of sensitive system information to an unauthorized control sphere in FortiClientWindows | MEDIUM 4.8 | 0.55% | – | |
| CVE-2025-22252 | FortiOS | Missing authentication for critical function in FortiProxy, FortiSwitchManager and others | CRITICAL 9 | 0.94% | – | |
| CVE-2025-47294 | FortiOS | Integer overflow or wraparound in FortiOS | MEDIUM 4.8 | 0.84% | – | |
| CVE-2024-54020 | FortiManager and FortiAnalyzer | Missing authorization in FortiManager | LOW 2.1 | 0.20% | – | |
| CVE-2025-47295 | FortiOS | Buffer over-read in FortiOS | LOW 3.4 | 0.78% | – | |
| CVE-2025-25251 | FortiClient and EMS | Incorrect Authorization in FortiClientMac | HIGH 7.4 | 0.19% | – | |
| CVE-2025-32756 | FortiMail | Stack-based buffer overflow in FortiMail, FortiVoice and others | CRITICAL 9.6 | 31% | Yes | |
| CVE-2025-22859 | FortiClient and EMS | Relative Path Traversal in FortiClientEMS | MEDIUM 5 | 0.60% | – | |
| CVE-2024-35281 | FortiClient and EMS | Improper isolation or compartmentalization in FortiClientMac, FortiVoiceUCDesktop | LOW 2.3 | 0.14% | – | |
| CVE-2024-48887 | Other security products | Unverified password change in FortiSwitch | CRITICAL 9.3 | 16% | – | |
| CVE-2024-50565 | FortiOS | Improper restriction of communication channel to intended endpoints in FortiOS, FortiVoice and others | LOW 3 | 0.40% | – | |
| CVE-2024-26013 | FortiOS | Improper restriction of communication channel to intended endpoints in FortiProxy, FortiManager and others | HIGH 7.1 | 0.51% | – | |
| CVE-2023-37930 | FortiOS | Multiple issues including the use of uninitialized ressources in FortiProxy, FortiOS | MEDIUM 6.7 | 0.64% | – | |
| CVE-2024-52962 | FortiManager and FortiAnalyzer | Improper Output Neutralization for Logs in FortiAnalyzer, FortiManager | MEDIUM 5 | 0.51% | – | |
| CVE-2024-46671 | FortiWeb | Incorrect User Management in FortiWeb | MEDIUM 5.6 | 0.45% | – | |
| CVE-2024-32122 | FortiOS | Storing passwords in a recoverable format in FortiOS | LOW 2.1 | 0.22% | – | |
| CVE-2024-54024 | Other security products | OS command injection in FortiIsolator | HIGH 7 | 1.2% | – | |
| CVE-2024-54025 | Other security products | OS command injection in FortiIsolator | MEDIUM 6.5 | 0.45% | – | |
| CVE-2025-25254 | FortiWeb | Path traversal in FortiWeb | MEDIUM 6.8 | 17% | – | |
| CVE-2025-22855 | FortiClient and EMS | Cross-site scripting in FortiClientEMS | LOW 2.6 | 0.36% | – | |
| CVE-2023-40714 | FortiSIEM | Relative path traversal in FortiSIEM | CRITICAL 9.7 | 0.62% | – | |
| CVE-2023-33302 | FortiMail | Classic buffer overflow in FortiNDR, FortiMail | MEDIUM 4.5 | 0.37% | – | |
| CVE-2021-24008 | Other security products | Exposure of sensitive system information to an unauthorized control sphere in FortiDDoS, FortiNDR and others | MEDIUM 5 | 0.50% | – | |
| CVE-2019-16149 | FortiClient and EMS | An Improper Neutralization of Input During Web Page Generation in FortiClientEMS version 6.2.0 may allow a… | MEDIUM 5.4 | 0.29% | – | |
| CVE-2023-25610 | FortiOS | Buffer underflow in FortiSwitchManager, FortiAnalyzer and others | CRITICAL 9.3 | 18% | – | |
| CVE-2021-26091 | FortiMail | Use of a cryptographically weak pseudo-random number generator in FortiMail | MEDIUM 6.9 | 0.31% | – | |
| CVE-2021-26105 | FortiSandbox | Stack-based buffer overflow in FortiSandbox | MEDIUM 6.4 | 0.50% | – | |
| CVE-2019-16151 | FortiOS | Improper neutralization of input during web page generation in FortiOS | MEDIUM 4.7 | 0.37% | – | |
| CVE-2023-47539 | FortiMail | Improper access control in FortiMail | CRITICAL 9 | 1.0% | – | |
| CVE-2024-21760 | Other security products | Code injection in FortiSOAR | HIGH 7.7 | 0.81% | – | |
| CVE-2019-6697 | FortiOS | Improper Neutralization of Input in FortiOS | MEDIUM 5.2 | 0.35% | – | |
| CVE-2020-9295 | FortiClient and EMS | FortiOS 6.2 running AV engine version 6.00142 and below, FortiOS 6.4 running AV engine version 6.00144 and… | MEDIUM 4.7 | 0.32% | – | |
| CVE-2020-29010 | FortiOS | Exposure of sensitive information to an unauthorized actor in FortiOS | MEDIUM 4.9 | 0.57% | – | |
| CVE-2019-17659 | FortiSIEM | Use of hard-coded cryptographic key in FortiSIEM | LOW 3.6 | 0.65% | – | |
| CVE-2024-54027 | FortiSandbox | Use of Hard-coded Cryptographic Key in FortiSandbox | HIGH 7.8 | 0.16% | – | |
| CVE-2019-15706 | FortiOS | An improper neutralization of input during web page generation in the SSL VPN portal of FortiProxy version… | MEDIUM 4 | 0.43% | – | |
| CVE-2024-55594 | FortiWeb | Improper handling of syntactically invalid structure in FortiWeb | MEDIUM 5.5 | 0.53% | – | |
| CVE-2023-48785 | FortiNAC | Improper certificate validation in FortiNAC-F | MEDIUM 4.4 | 0.17% | – | |
| CVE-2023-33300 | FortiNAC | Command injection in FortiNAC | MEDIUM 4.8 | 14% | – | |
| CVE-2023-45588 | FortiClient and EMS | External control of file name or path in FortiClientMac | HIGH 7.8 | 0.27% | – | |
| CVE-2024-40585 | FortiManager and FortiAnalyzer | Insertion of sensitive information into log file in FortiAnalyzer, FortiManager | MEDIUM 5.9 | 0.31% | – | |
| CVE-2022-29059 | FortiWeb | SQL injection in FortiWeb | LOW 2.6 | 0.41% | – | |
| CVE-2024-47573 | Other security products | Improper validation of integrity check value in FortiNDR | MEDIUM 6 | 0.22% | – | |
| CVE-2024-46662 | FortiManager and FortiAnalyzer | Command injection in FortiManager | HIGH 8.3 | 2.3% | – | |
| CVE-2024-40590 | FortiManager and FortiAnalyzer | Improper certificate validation in FortiPortal | MEDIUM 4.4 | 0.16% | – | |
| CVE-2024-26006 | FortiOS | Improper neutralization of input during web page Generation in FortiProxy, FortiOS | MEDIUM 6.9 | 0.61% | – | |
| CVE-2024-33501 | FortiManager and FortiAnalyzer | SQL injection in FortiManager | MEDIUM 4 | 0.18% | – | |
| CVE-2024-54026 | FortiSandbox | SQL injection in FortiSandbox, FortiSandbox Cloud | MEDIUM 4.1 | 0.42% | – | |
| CVE-2024-32123 | FortiManager and FortiAnalyzer | OS command injection in FortiManager, FortiAnalyzer | MEDIUM 6.5 | 0.44% | – | |
| CVE-2024-54018 | FortiSandbox | Multiple improper neutralization of special elements used in an OS Command in FortiSandbox | MEDIUM 6.5 | 10% | – | |
| CVE-2023-37933 | Other security products | Cross-site scripting in FortiADC | HIGH 8.6 | 0.33% | – | |
| CVE-2024-52960 | FortiSandbox | Client-side enforcement of server-side security in FortiSandbox | MEDIUM 4.2 | 0.34% | – | |
| CVE-2024-55590 | Other security products | OS command injection in FortiIsolator | HIGH 8.6 | 1.0% | – | |
| CVE-2024-45324 | FortiOS | Use of externally-controlled format string in FortiPAM, FortiWeb and others | HIGH 7 | 0.73% | – | |
| CVE-2024-46663 | FortiMail | Stack-buffer overflow in FortiMail | MEDIUM 6.5 | 0.18% | – | |
| CVE-2023-48790 | Other security products | Cross site request forgery in FortiNDR | HIGH 7.1 | 0.24% | – | |
| CVE-2024-52961 | FortiSandbox | Improper neutralization of special elements used in an OS Command in FortiSandbox | HIGH 8.6 | 0.55% | – | |
| CVE-2024-55592 | FortiSIEM | Incorrect authorization in FortiSIEM | LOW 3.6 | 0.26% | – | |
| CVE-2023-42784 | FortiWeb | Improper handling of syntactically invalid structure in FortiWeb | MEDIUM 5.5 | 0.38% | – | |
| CVE-2024-45328 | FortiSandbox | Incorrect authorization in FortiSandbox | HIGH 7.1 | 0.14% | – | |
| CVE-2023-40723 | FortiSIEM | Exposure of sensitive information to an unauthorized actor in FortiSIEM | HIGH 7.7 | 0.36% | – | |
| CVE-2024-55597 | FortiWeb | Path traversal in FortiWeb | MEDIUM 5.2 | 0.58% | – | |
| CVE-2025-24472 | FortiOS | FortiOS and FortiProxy Authentication Bypass | HIGH 8.1 | 7.2% | Yes · ransomware | |
| CVE-2024-27780 | FortiSIEM | Cross-site scripting in FortiSIEM | LOW 2.2 | 0.30% | – | |
| CVE-2024-27781 | FortiSandbox | Cross-site scripting in FortiSandbox | MEDIUM 6.9 | 28% | – | |
| CVE-2024-40584 | FortiManager and FortiAnalyzer | OS command injection in FortiAnalyzer, FortiManager | MEDIUM 6.8 | 2.0% | – | |
| CVE-2024-36508 | FortiManager and FortiAnalyzer | Path traversal in FortiManager, FortiAnalyzer | MEDIUM 5.9 | 0.24% | – | |
| CVE-2024-40586 | FortiClient and EMS | Improper Access Control in FortiClientWindows | MEDIUM 6.3 | 0.25% | – | |
| CVE-2023-40721 | FortiOS | Use of externally-controlled format string in FortiPAM, FortiSwitchManager and others | MEDIUM 6.3 | 0.24% | – | |
| CVE-2024-50567 | FortiWeb | OS command injection in FortiWeb | MEDIUM 6.8 | 2.2% | – | |
| CVE-2024-33504 | FortiManager and FortiAnalyzer | Use of hard-coded cryptographic key to encrypt sensitive data in FortiManager | LOW 3.9 | 0.30% | – | |
| CVE-2024-35279 | FortiOS | Stack-based buffer overflow in FortiOS | HIGH 7.7 | 1.0% | – | |
| CVE-2024-40591 | FortiOS | Incorrect privilege assignment in FortiOS | HIGH 8 | 0.62% | – | |
| CVE-2024-52966 | FortiManager and FortiAnalyzer | Exposure of sensitive information to an unauthorized actor in FortiAnalyzer | LOW 2.2 | 0.21% | – | |
| CVE-2024-52968 | FortiClient and EMS | Improper authentication in FortiClientMac | MEDIUM 5.8 | 0.24% | – | |
| CVE-2024-50569 | FortiWeb | OS command injection in FortiWeb | MEDIUM 6.3 | 1.8% | – | |
| CVE-2025-24470 | FortiManager and FortiAnalyzer | Improper Resolution of Path Equivalence in FortiPortal | HIGH 8.1 | 1.3% | – | |
| CVE-2022-23439 | FortiOS | Externally controlled reference to a resource in another sphere in FortiTester, FortiOS and others | MEDIUM 4.1 | 0.45% | – | |
| CVE-2024-50563 | FortiManager and FortiAnalyzer | Weak authentication in FortiAnalyzer, FortiManager | MEDIUM 6.7 | 0.58% | – | |
| CVE-2024-48885 | FortiWeb | Path traversal in FortiVoice, FortiRecorder and others | MEDIUM 5.2 | 0.79% | – | |
| CVE-2024-45331 | FortiManager and FortiAnalyzer | Incorrect privilege assignment in FortiAnalyzer Cloud, FortiManager and others | MEDIUM 6.9 | 0.21% | – | |
| CVE-2024-35280 | Other security products | Cross-site scripting in FortiDeceptor | MEDIUM 5.1 | 0.29% | – | |
| CVE-2024-32115 | FortiManager and FortiAnalyzer | Relative path traversal in FortiManager | MEDIUM 5.2 | 1.1% | – | |
| CVE-2024-23106 | FortiClient and EMS | Improper restriction of excessive authentication attempts in FortiClientEMS | HIGH 7.7 | 0.96% | – | |
| CVE-2023-37931 | Other security products | SQL injection in FortiVoice | HIGH 8.6 | 0.80% | – | |
| CVE-2024-47571 | FortiManager and FortiAnalyzer | Operation on a resource after expiration or release in FortiManager | HIGH 7.9 | 0.91% | – | |
| CVE-2024-47572 | Other security products | Improper neutralization of formula elements in a csv file in FortiSOAR | HIGH 8.3 | 0.58% | – | |
| CVE-2024-46667 | FortiSIEM | Allocation of resources without limits or throttling in FortiSIEM | MEDIUM 6.9 | 0.59% | – | |
| CVE-2024-36504 | FortiOS | Out-of-bounds read in FortiOS | MEDIUM 6.2 | 0.72% | – | |
| CVE-2024-21758 | FortiWeb | Stack-based buffer overflow in FortiWeb | MEDIUM 6.1 | 0.22% | – | |
| CVE-2024-46666 | FortiOS | Allocation of resources without limits or throttling in FortiOS | MEDIUM 4.8 | 0.69% | – | |
| CVE-2024-45326 | Other security products | Improper Access Control in FortiDeceptor | LOW 3.9 | 0.26% | – | |
| CVE-2024-35277 | FortiManager and FortiAnalyzer | Missing authentication for critical function in FortiManager | HIGH 8.4 | 0.71% | – | |
| CVE-2024-26012 | Other security products | OS command injection in FortiAP-S, FortiAP-W2 and others | MEDIUM 6.3 | 0.69% | – | |
| CVE-2024-36506 | FortiClient and EMS | Improper verification of source of a communication channel in FortiClientEMS | LOW 3.5 | 0.51% | – | |
| CVE-2024-48890 | Other security products | OS command injection in FortiSOAR | MEDIUM 6.3 | 1.1% | – | |
| CVE-2024-33502 | FortiManager and FortiAnalyzer | Path traversal in FortiManager, FortiAnalyzer | MEDIUM 6.4 | 1.3% | – | |
| CVE-2024-50564 | FortiClient and EMS | Use of hard-coded cryptographic key in FortiClientWindows | LOW 3.2 | 0.22% | – | |
| CVE-2024-36510 | FortiClient and EMS | Observable response discrepancy in FortiClientEMS, FortiSOAR | MEDIUM 4.9 | 0.73% | – | |
| CVE-2024-54021 | FortiOS | HTTP response splitting in FortiOS, FortiProxy | MEDIUM 6.4 | 0.78% | – | |
| CVE-2024-35278 | FortiManager and FortiAnalyzer | SQL injection in FortiPortal | MEDIUM 4.1 | 0.37% | – | |
| CVE-2024-52967 | FortiManager and FortiAnalyzer | Improper neutralization of script-related html tags in a web page (basic xss) in FortiPortal | LOW 3.3 | 0.36% | – | |
| CVE-2024-40587 | Other security products | OS command injection in FortiVoice | MEDIUM 6.3 | 0.63% | – | |
| CVE-2024-46664 | Other security products | Relative path traversal in FortiRecorder | MEDIUM 5.2 | 0.53% | – | |
| CVE-2024-47566 | Other security products | Path traversal in FortiRecorder | MEDIUM 4.8 | 0.20% | – | |
| CVE-2024-48886 | FortiOS | Weak authentication in FortiOS, FortiProxy | HIGH 8 | 0.48% | – | |
| CVE-2024-27778 | FortiSandbox | Improper neutralization of special elements used in an OS Command in FortiSandbox | HIGH 8.3 | 0.56% | – | |
| CVE-2024-33503 | FortiManager and FortiAnalyzer | Improper privilege management in FortiManager Cloud, FortiManager | MEDIUM 6.7 | 0.22% | – | |
| CVE-2023-37936 | Other security products | Use of hard-coded cryptographic key in FortiSwitch | CRITICAL 9.6 | 0.99% | – | |
| CVE-2023-37937 | Other security products | OS command injection in FortiSwitch | HIGH 7.6 | 0.53% | – | |
| CVE-2024-56497 | FortiMail | OS command injection in FortiMail, FortiRecorder | MEDIUM 6.5 | 0.59% | – | |
| CVE-2024-48884 | FortiOS | Path traversal in FortiManager, FortiProxy and others | HIGH 7.1 | 15% | – | |
| CVE-2024-52969 | FortiSIEM | SQL injection in FortiSIEM | LOW 3.7 | 0.50% | – | |
| CVE-2024-46668 | FortiOS | Allocation of resources without limits or throttling in FortiOS | HIGH 7.1 | 1.00% | – | |
| CVE-2024-35273 | FortiManager and FortiAnalyzer | Out-of-bounds write in FortiAnalyzer, FortiManager | HIGH 7 | 0.66% | – | |
| CVE-2023-46715 | FortiOS | Origin validation error in FortiProxy, FortiOS | MEDIUM 4.7 | 0.95% | – | |
| CVE-2023-42786 | FortiOS | A null pointer dereference in FortiOS versions 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0 all versions,… | MEDIUM 6.4 | 0.87% | – | |
| CVE-2024-35276 | FortiManager and FortiAnalyzer | Stack-based buffer overflow in FortiAnalyzer, FortiManager Cloud and others | MEDIUM 5 | 0.42% | – | |
| CVE-2024-35275 | FortiManager and FortiAnalyzer | SQL injection in FortiManager, FortiAnalyzer | MEDIUM 6.5 | 0.82% | – | |
| CVE-2023-42785 | FortiOS | A null pointer dereference in FortiOS versions 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0 all versions,… | MEDIUM 6.4 | 0.71% | – | |
| CVE-2024-36512 | FortiManager and FortiAnalyzer | Path traversal in FortiManager, FortiAnalyzer | HIGH 7 | 1.4% | – | |
| CVE-2024-46670 | FortiOS | Out-of-bounds Read in FortiOS, FortiProxy and others | HIGH 7.5 | 0.63% | – | |
| CVE-2024-46669 | FortiOS | Integer Overflow or Wraparound in FortiOS | LOW 3.2 | 0.60% | – | |
| CVE-2024-55593 | FortiWeb | SQL injection in FortiWeb | LOW 2.6 | 0.41% | – | |
| CVE-2024-50566 | FortiManager and FortiAnalyzer | OS command injection in FortiManager, FortiManager Cloud | HIGH 7.2 | 1.1% | – | |
| CVE-2024-55591 | FortiOS | FortiOS and FortiProxy Authentication Bypass | CRITICAL 9.6 | 94% | Yes · ransomware | |
| CVE-2024-52963 | FortiOS | Out-of-bounds write in FortiProxy, FortiOS and others | LOW 3.5 | 0.76% | – | |
| CVE-2024-48893 | Other security products | Improper neutralization of input during web page generation in FortiSOAR | MEDIUM 6.4 | 0.46% | – | |
| CVE-2024-46665 | FortiOS | Insertion of sensitive information into sent data in FortiOS | LOW 3.5 | 0.54% | – | |
| CVE-2024-47575 | FortiManager and FortiAnalyzer | FortiManager Missing Authentication | CRITICAL 9.8 | 95% | Yes | |
| CVE-2023-48788 | FortiClient and EMS | FortiClient EMS SQL Injection | CRITICAL 9.3 | 98% | Yes · ransomware | |
| CVE-2024-23113 | FortiOS | Use of externally-controlled format string in FortiOS, FortiProxy and others | CRITICAL 9.8 | 62% | Yes | |
| CVE-2024-21762 | FortiOS | FortiOS Out-of-Bound Write | CRITICAL 9.6 | 83% | Yes · ransomware | |
| CVE-2023-27997 | FortiOS | FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow | CRITICAL 9.2 | 86% | Yes · ransomware | |
| CVE-2022-41328 | FortiOS | FortiOS Path Traversal | MEDIUM 6.5 | 11% | Yes | |
| CVE-2022-42475 | FortiOS | FortiOS Heap-Based Buffer Overflow | CRITICAL 9.3 | 99% | Yes · ransomware | |
| CVE-2022-40684 | FortiOS | Authentication bypass using an alternate path or channel in Fortinet FortiOS, FortiProxy, FortiSwitchManager | CRITICAL 9.8 | 100% | Yes · ransomware | |
| CVE-2021-44168 | FortiOS | FortiOS Arbitrary File Download | LOW 3.3 | 0.86% | Yes | |
| CVE-2019-5591 | FortiOS | FortiOS Default Configuration | MEDIUM 6.5 | 19% | Yes · ransomware | |
| CVE-2020-12812 | FortiOS | FortiOS SSL VPN Improper Authentication | HIGH 7.5 | 45% | Yes · ransomware | |
| CVE-2019-6693 | FortiOS | FortiOS Use of Hard-Coded Credentials | MEDIUM 6.5 | 5.8% | Yes · ransomware | |
| CVE-2018-13382 | FortiOS | FortiOS and FortiProxy Improper Authorization | CRITICAL 9.1 | 82% | Yes · ransomware | |
| CVE-2018-13379 | FortiOS | FortiOS SSL VPN Path Traversal | CRITICAL 9.1 | 100% | Yes · ransomware | |
| CVE-2018-13383 | FortiOS | FortiOS and FortiProxy Out-of-bounds Write | MEDIUM 4.3 | 34% | Yes · ransomware | |
| CVE-2018-13374 | FortiOS | FortiOS and FortiADC Improper Access Control | MEDIUM 4.3 | 38% | Yes · ransomware |
Sources: Fortinet security advisories, CISA KEV and FIRST EPSS. Severity is the vendor's own rating.