{"total":34,"items":[{"id":579,"title":"Improper limitation of a pathname to a restricted directory","original_title":"Improper limitation of a pathname to a restricted directory","source_rating":null,"summary":"CVSSv3 Score: 9.8 An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') [CWE-22] and Improper Neutralization of NULL Byte or NULL Character [CWE-158] vulnerability may…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-175","type":"advisory","language":"en","published_at":"2026-10-01T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":296,"title":"ZTNA Portal Improper Certificate Validation","original_title":"ZTNA Portal Improper Certificate Validation","source_rating":null,"summary":"CVSSv3 Score: 7.3 An improper certificate validation vulnerability [CWE-295] in FortiOS and FortiProxy Agentless ZTNA portal may allow a remote and unauthenticated attacker to perform a…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-174","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":294,"title":"Uncontrolled Resource Consumption in SNMP","original_title":"Uncontrolled Resource Consumption in SNMP","source_rating":null,"summary":"CVSSv3 Score: 5.9 A Use of Uninitialized Variable [CWE-457] vulnerability in Fortinet FortiAnalyzer SNMP daemon may allow a remote authenticated attacker with user permission to cause a denial of…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-172","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":287,"title":"Broken Access control on Websocket streams","original_title":"Broken Access control on Websocket streams","source_rating":null,"summary":"CVSSv3 Score: 4.9 An Improper Access control vulnerability [CWE-284] in FortiSOAR may allow an authenticated attacker with zero permissions to subscribe to websocket streams and topics and to inject…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-164","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":290,"title":"JWT used for authentication in web GUI signed with static key","original_title":"JWT used for authentication in web GUI signed with static key","source_rating":null,"summary":"CVSSv3 Score: 9.6 An Inclusion of Sensitive Information in Source Code vulnerability [CWE-540] in FortiMonitorOnSight web portal may allow a remote unauthenticated attacker to bypass authentication…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-170","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":286,"title":"Arbitrary process termination from exposed minifilter communication port","original_title":"Arbitrary process termination from exposed minifilter communication port","source_rating":null,"summary":"CVSSv3 Score: 4.7 An Unverified Ownership Vulnerability [CWE-283] in FortiClient Windows fortimon3 driver may allow an authenticated attacker to terminate arbitrary processes via an exposed…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-165","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Microsoft","Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":293,"title":"Unauthenticated Control of NAT Rules Leading to Exposure of Sensitive Information","original_title":"Unauthenticated Control of NAT Rules Leading to Exposure of Sensitive Information","source_rating":null,"summary":"CVSSv3 Score: 8.9 An improper access control vulnerability [CWE-284] in FortiSandbox, FortiSandbox Cloud and FortiSandbox PaaS WEB UI may allow an unauthenticated attacker to access sensitive…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-166","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":289,"title":"Improper Authentication of FortiPAM Server","original_title":"Improper Authentication of FortiPAM Server","source_rating":null,"summary":"CVSSv3 Score: 9.1 An improper authentication vulnerability [CWE-287] in the Fortinet Privileged Access Agent Chrome Extension may allow a remote unauthenticated attacker to proxy a user's browser…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-168","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet","Google"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":288,"title":"Cron Job Injection in Remote Backup","original_title":"Cron Job Injection in Remote Backup","source_rating":null,"summary":"CVSSv3 Score: 6.7 An Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability [CWE-77] in FortiSandbox may allow a privileged attacker to execute…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-167","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":291,"title":"Null Pointer Dereference in Log Report","original_title":"Null Pointer Dereference in Log Report","source_rating":null,"summary":"CVSSv3 Score: 2.5 A NULL Pointer Dereference vulnerability [CWE-476] in FortiOS, FortiProxy and FortiPAM may allow an authenticated attacker to crash the httpsd daemon via crafted HTTP requests.…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-173","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":292,"title":"Open Redirect on FortiSIEM","original_title":"Open Redirect on FortiSIEM","source_rating":null,"summary":"CVSSv3 Score: 2.8 An URL redirection to untrusted site ('open redirect') [CWE-601] vulnerability in FortiSIEM may allow an authenticated attacker to cause a redirection to any website via specially…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-169","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":295,"title":"Workflow session email approval process bypass","original_title":"Workflow session email approval process bypass","source_rating":null,"summary":"CVSSv3 Score: 4.7 An improper access control vulnerability [CWE-284] in FortiManager may allow an administrator to bypass the approval process for workflow sessions via crafted HTTP or HTTPs…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-171","type":"advisory","language":"en","published_at":"2026-09-08T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":304,"title":"UI DoS attack","original_title":"UI DoS attack","source_rating":null,"summary":"CVSSv3 Score: 5.0 An Allocation of Resources Without Limits or Throttling vulnerability [CWE-770] in FortiOS may allow an unauthenticated attacker to perform a slow HTTP DoS attack on the web…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-162","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":303,"title":"Stack buffer overflow in WAD","original_title":"Stack buffer overflow in WAD","source_rating":null,"summary":"CVSSv3 Score: 5.1 A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS explicit proxy may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-161","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":302,"title":"Server-Side Request Forgery (SSRF)","original_title":"Server-Side Request Forgery (SSRF)","source_rating":null,"summary":"CVSSv3 Score: 3.4 A Server-Side request forgery (SSRF) [CWE-918] vulnerability in FortiSIEM GUI may allow an authenticated attacker to send HTTP requests originating from the targeted device via…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-159","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":297,"title":"HTTP/2 Bomb CVE-2026-49975","original_title":"HTTP/2 Bomb CVE-2026-49975","source_rating":null,"summary":"CVSSv3 Score: 5.8 CVE-2026-49975Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-163","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Apache"],"cves":[{"id":"CVE-2026-49975","cvss":7.5,"epss":0.04169,"epss_percentile":0.90585,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":298,"title":"Broken access control in the RADIUS type admin group","original_title":"Broken access control in the RADIUS type admin group","source_rating":null,"summary":"CVSSv3 Score: 8.8 An Improper Authentication vulnerability [CWE-287] in the FortiWeb Remote Radius Type Admin Authentication configured with specific, non-default settings may allow a remote…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-158","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":299,"title":"Content-Encoding WAF Evasion","original_title":"Content-Encoding WAF Evasion","source_rating":null,"summary":"CVSSv3 Score: 4.8 An incomplete list of disallowed inputs [CWE-184] in FortiWeb WAF may allow an unauthenticated attacker to bypass policies via specifically crafted requests. Revised on 2026-08-12…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-157","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":300,"title":"FGFM Authentication Weakening via CLI Configuration","original_title":"FGFM Authentication Weakening via CLI Configuration","source_rating":null,"summary":"CVSSv3 Score: 7.3 An Authentication Bypass Using an Alternate Path or Channel [CWE-288] vulnerability in FortiManager and FortiManager Cloud may allow a remote unauthenticated attacker to…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-160","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":301,"title":"Heap overflow in kernel driver due to missing size validation","original_title":"Heap overflow in kernel driver due to missing size validation","source_rating":null,"summary":"CVSSv3 Score: 7.3 A buffer copy without checking size of input vulnerability [CWE-120] in FortiClient Windows may allow an unauthenticated attacker in a position to alter or craft DNS responses to…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-156","type":"advisory","language":"en","published_at":"2026-08-12T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Microsoft","Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":315,"title":"Unauthenticated VNC access exposed on all interfaces","original_title":"Unauthenticated VNC access exposed on all interfaces","source_rating":null,"summary":"CVSSv3 Score: 7.7 An Exposure of Resource to Wrong Sphere vulnerability [CWE-668] in FortiSandbox may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-145","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":307,"title":"Header injection in Web Filter warning page","original_title":"Header injection in Web Filter warning page","source_rating":null,"summary":"CVSSv3 Score: 3.4 An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] in FortiOS and FortiProxy may allow an attacker in possession of a…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-152","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":308,"title":"Header injection in captive portal authentication form","original_title":"Header injection in captive portal authentication form","source_rating":null,"summary":"CVSSv3 Score: 3.1 An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] in FortiOS and FortiProxy captive portal may allow an attacker able…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-153","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":309,"title":"Missed certificate verification in AD Connector communication with FortiClient EMS","original_title":"Missed certificate verification in AD Connector communication with FortiClient EMS","source_rating":null,"summary":"CVSSv3 Score: 6.7 An Improper Certificate Validation vulnerability [CWE-295] in FortiClient EMS may allow a remote unauthenticated attacker to impersonate an AD Connector via a valid API Key.…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-147","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":310,"title":"Out of bounds read in GUI","original_title":"Out of bounds read in GUI","source_rating":null,"summary":"CVSSv3 Score: 7.0 An out of bounds read [CWE-125] vulnerability in FortiAuthenticator may allow a remote unauthenticated attacker to retrieve sensitive information via a specially crafted request.…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-146","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":[],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":311,"title":"Path traversal in CLI command allows deletion of root file system","original_title":"Path traversal in CLI command allows deletion of root file system","source_rating":null,"summary":"CVSSv3 Score: 5.0 An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in FortiOS, FortiPAM, FortiProxy and FortiSwitch Manager may allow a…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-151","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":312,"title":"SSL-VPN Reflected XSS","original_title":"SSL-VPN Reflected XSS","source_rating":null,"summary":"CVSSv3 Score: 6.1 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiOS, FortiProxy, FortiPAM and FortiSwitch-Manager Agentless…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-150","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":313,"title":"Stack Buffer Overflow in Log Report","original_title":"Stack Buffer Overflow in Log Report","source_rating":null,"summary":"CVSSv3 Score: 5.9 A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS, FortiProxy and FortiPAM may allow a privileged authenticated attacker who can bypass stack protection and ASLR to…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-148","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":314,"title":"Supers override fails to properly override supervisor address","original_title":"Supers override fails to properly override supervisor address","source_rating":null,"summary":"CVSSv3 Score: 6.9 An Improper Restriction of Communication Channel to Intended Endpoints [CWE-923] vulnerability in FortiSIEM Windows Agent may allow an unauthorized attacker on the same local…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-155","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Microsoft","Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null},{"id":305,"title":"Buffer overread in authd and wad daemon","original_title":"Buffer overread in authd and wad daemon","source_rating":null,"summary":"CVSSv3 Score: 4.1 A buffer over-read vulnerability [CWE-126] in FortiOS, FortiProxy, and FortiSASE may allow an authenticated remote attacker to return a portion of device memory in the redirect…","ai":false,"actions":[],"url":"https://fortiguard.fortinet.com/psirt/FG-IR-26-154","type":"advisory","language":"en","published_at":"2026-07-14T07:00:00+00:00","severity":"laag","priority":0,"vendors":["Fortinet"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"fortinet-psirt","name":"Fortinet PSIRT","category":"vendor","country":null,"license":"© Fortinet","reuse":"excerpt"},"bundle":null}]}