<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>0dayNews — Fortinet</title><description>Vulnerabilities in FortiOS, FortiGate, and FortiProxy — the firewall and SSL-VPN appliances that sit at the network edge, making a single auth-bypass or overflow bug a direct path to full network compromise. Combined article + CVE feed for the Fortinet beat.</description><link>https://0daynews.com/</link><language>en-us</language><item><title>CVE-2018-13374 — Fortinet FortiOS and FortiADC Improper Access Control Vulnerability</title><link>https://0daynews.com/cve/cve-2018-13374/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2018-13374/</guid><description>Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2018-13379 — Fortinet FortiOS SSL VPN Path Traversal Vulnerability</title><link>https://0daynews.com/cve/cve-2018-13379/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2018-13379/</guid><description>Fortinet FortiOS SSL VPN web portal contains a path traversal vulnerability that may allow an unauthenticated attacker to download FortiOS system files through specially crafted HTTP resource requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2018-13382 — Fortinet FortiOS and FortiProxy Improper Authorization</title><link>https://0daynews.com/cve/cve-2018-13382/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2018-13382/</guid><description>An Improper Authorization vulnerability in Fortinet FortiOS and FortiProxy under SSL VPN web portal allows an unauthenticated attacker to modify the password.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2018-13383 — Fortinet FortiOS and FortiProxy Out-of-bounds Write</title><link>https://0daynews.com/cve/cve-2018-13383/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2018-13383/</guid><description>A heap buffer overflow in Fortinet FortiOS and FortiProxy may cause the SSL VPN web service termination for logged in users.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2019-5591 — Fortinet FortiOS Default Configuration Vulnerability</title><link>https://0daynews.com/cve/cve-2019-5591/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-5591/</guid><description>Fortinet FortiOS contains a default configuration vulnerability that may allow an unauthenticated attacker on the same subnet to intercept sensitive information by impersonating the Lightweight Directory Access Protocol (LDAP) server.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2019-6693 — Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability</title><link>https://0daynews.com/cve/cve-2019-6693/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-6693/</guid><description>Fortinet FortiOS contains a use of hard-coded credentials vulnerability that could allow an attacker to cipher sensitive data in FortiOS configuration backup file via knowledge of the hard-coded key. </description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2020-12812 — Fortinet FortiOS SSL VPN Improper Authentication Vulnerability</title><link>https://0daynews.com/cve/cve-2020-12812/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-12812/</guid><description>Fortinet FortiOS SSL VPN contains an improper authentication vulnerability that may allow a user to login successfully without being prompted for the second factor of authentication (FortiToken) if they change the case in their username.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2021-44168 — Fortinet FortiOS Arbitrary File Download</title><link>https://0daynews.com/cve/cve-2021-44168/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-44168/</guid><description>Fortinet FortiOS &quot;execute restore src-vis&quot; downloads code without integrity checking, allowing an attacker to arbitrarily download files.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>low</category><category>cve</category></item><item><title>CVE-2022-40684 — FortiOS / FortiProxy Authentication Bypass on Administrative Interface</title><link>https://0daynews.com/cve/cve-2022-40684/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-40684/</guid><description>An authentication-bypass vulnerability in FortiOS, FortiProxy, and FortiSwitchManager allows a remote attacker to perform administrative operations on the management interface via crafted HTTP(S) requests, including adding a new administrator SSH key for persistent access.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2022-41328 — Fortinet FortiOS Path Traversal Vulnerability</title><link>https://0daynews.com/cve/cve-2022-41328/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-41328/</guid><description>Fortinet FortiOS contains a path traversal vulnerability that may allow a local privileged attacker to read and write files via crafted CLI commands.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2022-42475 — Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2022-42475/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-42475/</guid><description>Multiple versions of Fortinet FortiOS SSL-VPN contain a heap-based buffer overflow vulnerability which can allow an unauthenticated, remote attacker to execute arbitrary code or commands via specifically crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2023-27997 — Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2023-27997/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-27997/</guid><description>Fortinet FortiOS and FortiProxy SSL-VPN contain a heap-based buffer overflow vulnerability which can allow an unauthenticated, remote attacker to execute code or commands via specifically crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2023-48788 — Fortinet FortiClient EMS SQL Injection Vulnerability</title><link>https://0daynews.com/cve/cve-2023-48788/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-48788/</guid><description>Fortinet FortiClient EMS contains a SQL injection vulnerability that allows an unauthenticated attacker to execute commands as SYSTEM via specifically crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2024-21762 — Fortinet FortiOS Out-of-Bound Write Vulnerability</title><link>https://0daynews.com/cve/cve-2024-21762/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-21762/</guid><description>Fortinet FortiOS contains an out-of-bound write vulnerability that allows a remote unauthenticated attacker to execute code or commands via specially crafted HTTP requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2024-23113 — Fortinet Multiple Products Format String Vulnerability</title><link>https://0daynews.com/cve/cve-2024-23113/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-23113/</guid><description>Fortinet FortiOS, FortiPAM, FortiProxy, and FortiWeb contain a format string vulnerability that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2024-47575 — Fortinet FortiManager Missing Authentication Vulnerability</title><link>https://0daynews.com/cve/cve-2024-47575/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-47575/</guid><description>Fortinet FortiManager contains a missing authentication vulnerability in the fgfmd daemon that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2024-55591 — Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability</title><link>https://0daynews.com/cve/cve-2024-55591/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-55591/</guid><description>Fortinet FortiOS and FortiProxy contain an authentication bypass vulnerability that may allow an unauthenticated, remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-24472 — Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability</title><link>https://0daynews.com/cve/cve-2025-24472/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-24472/</guid><description> Fortinet FortiOS and FortiProxy contain an authentication bypass vulnerability that allows a remote attacker to gain super-admin privileges via crafted CSF proxy requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>high</category><category>cve</category></item><item><title>CVE-2025-25257 — Fortinet FortiWeb SQL Injection Vulnerability</title><link>https://0daynews.com/cve/cve-2025-25257/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-25257/</guid><description>Fortinet FortiWeb contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized SQL code or commands via crafted HTTP or HTTPs requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-32756 — Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2025-32756/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-32756/</guid><description>Fortinet FortiFone, FortiVoice, FortiNDR and FortiMail contain a stack-based overflow vulnerability that may allow a remote unauthenticated attacker to execute arbitrary code or commands via crafted HTTP requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-58034 — Fortinet FortiWeb OS Command Injection Vulnerability</title><link>https://0daynews.com/cve/cve-2025-58034/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-58034/</guid><description>Fortinet FortiWeb contains an OS command Injection vulnerability that may allow an authenticated attacker to execute unauthorized code on the underlying system via crafted HTTP requests or CLI commands.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>high</category><category>cve</category></item><item><title>CVE-2025-59718 — Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability</title><link>https://0daynews.com/cve/cve-2025-59718/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-59718/</guid><description>Fortinet FortiOS, FortiSwitchMaster, FortiProxy, and FortiWeb contain an improper verification of cryptographic signature vulnerability that may allow an unauthenticated attacker to bypass the FortiCloud SSO login authentication via a crafted SAML message. Please be aware that CVE-2025-59719 pertains to the same problem and is mentioned in the same vendor advisory. Ensure to apply all patches mentioned in the advisory.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-64446 — Fortinet FortiWeb Path Traversal Vulnerability</title><link>https://0daynews.com/cve/cve-2025-64446/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-64446/</guid><description>Fortinet FortiWeb contains a relative path traversal vulnerability that may allow an unauthenticated attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-68686 — FortiOS patch bypass re-enables symbolic link persistence on compromised devices</title><link>https://0daynews.com/cve/cve-2025-68686/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-68686/</guid><description>FortiOS 7.0–7.6 patch bypass restores symbolic link persistence on already-compromised devices via crafted HTTP requests. Added to CISA KEV July 2026.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>medium</category><category>cve</category></item><item><title>CVE-2026-21643 — Fortinet FortiClient EMS SQL Injection Vulnerability</title><link>https://0daynews.com/cve/cve-2026-21643/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-21643/</guid><description>Fortinet FortiClient EMS contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-24858 — Fortinet Multiple Products Authentication Bypass Using an Alternate Path or Channel Vulnerability</title><link>https://0daynews.com/cve/cve-2026-24858/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-24858/</guid><description>Fortinet FortiAnalyzer, FortiManager, FortiOS, and FortiProxy contain an authentication bypass using an alternate path or channel that could allow an attacker with a FortiCloud account and a registered device to log into other devices registered to other accounts, if FortiCloud SSO authentication is enabled on those devices.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-25089 — Fortinet FortiSandbox unauthenticated OS command injection (4.2, 4.4, 5.0, Cloud, PaaS)</title><link>https://0daynews.com/cve/cve-2026-25089/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-25089/</guid><description>An unauthenticated OS command injection across FortiSandbox 4.2, 4.4, 5.0, plus FortiSandbox Cloud and PaaS 5.0 lets a network attacker run arbitrary commands via crafted HTTP requests. CVSS 9.8; CISA-listed KEV.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-26035 — FortiWeb Authentication Bypass Allows Unauthenticated Login</title><link>https://0daynews.com/cve/cve-2026-26035/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-26035/</guid><description>An improper authentication flaw in FortiWeb lets remote unauthenticated attackers log in with any credentials. Affects versions 7.0.x through 8.0.x; patch available.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-35616 — Fortinet FortiClient EMS Improper Access Control Vulnerability</title><link>https://0daynews.com/cve/cve-2026-35616/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-35616/</guid><description>Fortinet FortiClient EMS contains an improper access control vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-39808 — Fortinet FortiSandbox unauthenticated OS command injection (4.4 branch and PaaS)</title><link>https://0daynews.com/cve/cve-2026-39808/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-39808/</guid><description>An unauthenticated OS command injection in Fortinet FortiSandbox 4.4.0–4.4.8 and a range of FortiSandbox PaaS builds lets a network attacker run arbitrary commands via crafted HTTP requests. CVSS 9.8; CISA-listed KEV.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-70468 — FortiManager Authentication Bypass via Alternate Path</title><link>https://0daynews.com/cve/cve-2026-70468/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-70468/</guid><description>Authentication bypass in FortiManager 7.2.5 through 7.6.1 (and cloud variants) allows unauthorized access to the central management plane. CVSS 8.1, patch available.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Fortinet</category><category>high</category><category>cve</category></item><item><title>Fortinet Patches Critical FortiWeb Auth Bypass, CVSS 9.8</title><link>https://0daynews.com/articles/2026-08-13-fortinet-fortiweb-fortimanager-aug-patches/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-13-fortinet-fortiweb-fortimanager-aug-patches/</guid><description>CVE-2026-26035 in FortiWeb lets unauthenticated attackers log in with any credentials — CVSS 9.8. FortiManager also gets a CVSS 8.1 auth bypass fix this cycle.</description><pubDate>Thu, 13 Aug 2026 10:00:00 GMT</pubDate><category>Fortinet</category><category>article</category></item><item><title>Fortinet FortiOS Persistence Bypass Added to CISA KEV</title><link>https://0daynews.com/articles/2026-07-27-fortinet-forios-cve-2025-68686-kev/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-27-fortinet-forios-cve-2025-68686-kev/</guid><description>CISA added CVE-2025-68686 to KEV today — a FortiOS patch bypass that lets attackers restore persistence after an initial compromise. Affects 7.0 through 7.6.</description><pubDate>Mon, 27 Jul 2026 20:00:00 GMT</pubDate><category>Fortinet</category><category>article</category></item><item><title>FortiSandbox: two 9.8 unauth RCEs hit KEV, Sunday deadline</title><link>https://0daynews.com/articles/2026-07-16-fortinet-fortisandbox-cve-2026-39808-25089-kev-unauth-rce/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-16-fortinet-fortisandbox-cve-2026-39808-25089-kev-unauth-rce/</guid><description>CISA added CVE-2026-39808 and CVE-2026-25089 to KEV today — unauthenticated OS command injection in Fortinet FortiSandbox, CVSS 9.8 each, federal BOD 26-04 deadline this Sunday.</description><pubDate>Thu, 16 Jul 2026 19:15:00 GMT</pubDate><category>Fortinet</category><category>article</category></item><item><title>FortiOS Auth Bypass: Fortinet Warned Select Customers</title><link>https://0daynews.com/articles/2026-07-03-fortios-fortiproxy-auth-bypass-cve-2022-40684/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-03-fortios-fortiproxy-auth-bypass-cve-2022-40684/</guid><description>CVE-2022-40684 let attackers bypass authentication on FortiOS and FortiProxy management interfaces and plant persistent SSH keys — Fortinet quietly warned targeted customers before public disclosure.</description><pubDate>Fri, 03 Jul 2026 13:00:00 GMT</pubDate><category>Fortinet</category><category>article</category></item></channel></rss>