13 Total CVEs
5 AI Analyzed
3 CISA KEV
6 Critical
All Vendors
Showing 1-13 of 13 CVEs
CVE-2025-64447
8.1
Fortinet Multiple Products

A reliance on cookies without validation and integrity checking vulnerability in Fortinet FortiWeb 8

2025-12-10
CVE-2025-64446
KEV
9.8
Fortinet Multiple Products

A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4.9, FortiWeb...

2025-11-15
CVE-2025-64155
9.8
Fortinet Multiple Products

An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3...

2026-01-14
CVE-2025-60024
8.8
Fortinet Multiple Products

Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulnerability in Fortinet FortiVoice...

2025-12-10
CVE-2025-59719
Analyzed
9.8
Fortinet Multiple Products

An improper verification of cryptographic signature vulnerability in Fortinet FortiWeb 8.0.0, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4...

2025-12-10
CVE-2025-58692
8.8
Fortinet Multiple Products

An improper neutralization of special elements used in an SQL Command ("SQL Injection") vulnerability [CWE-89] in Fortinet FortiVoice 7

2025-11-19
CVE-2025-58034
KEV Analyzed
7.2
Fortinet Multiple Products

An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiWeb 8

2025-11-19
CVE-2025-54658
Analyzed
7.8
Fortinet Multiple Products

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiDLP Agent's Outlookproxy plu...

2025-10-16
CVE-2025-52970
8.1
Fortinet Multiple Products

A improper handling of parameters in Fortinet FortiWeb versions 7

2025-08-12
CVE-2025-49201
8.1
Fortinet Multiple Products

A weak authentication in Fortinet FortiPAM 1

2025-10-14
CVE-2025-47855
9.8
Fortinet Multiple Products

An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in Fortinet FortiFone 7.0.0 through 7.0.1, FortiFone 3.0.13 thro...

2026-01-14
CVE-2025-25257
KEV Analyzed
9.8
Fortinet Multiple Products

An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] in Fortinet FortiWeb version 7.6.0 thro...

2025-07-17
CVE-2025-25256
Analyzed
9.8
Fortinet Multiple Products

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSIEM version 7.3...

2025-08-12