VENDOR
Fortinet vulnerabilities: CVEs, exploitation and patches
Every Fortinet CVE reviewed by Diras Labs analysts, newest first, with exploitation status and fixes.
- CVE-2026-84390 CRITICAL 9.8
- CVE-2026-26084 CRITICAL 9.9
- CVE-2026-26035 CRITICAL 9.8
- CVE-2026-84388 CRITICAL 9.6
-
CVE-2025-68686
FortiOS exposure of sensitive information to unauthenticated remote actorsMEDIUM 5.9
- CISA KEV
- EXPLOITED
-
CVE-2025-25249
Fortinet FortiOS and FortiSwitchManager heap buffer overflow remote code executionCRITICAL 9.8
- CISA KEV
- EXPLOITED
-
CVE-2026-39808
FortiSandbox OS command injection unauthenticated remote code executionCRITICAL 9.8
- CISA KEV
- EXPLOITED
- PoC PUBLIC
-
CVE-2026-25089
FortiSandbox OS command injection unauthenticated remote command executionCRITICAL 9.8
- CISA KEV
- EXPLOITED
- PoC PUBLIC
No CVEs on this page match the filters.
8 CVEs · page 1 of 1