fortinet

1,122 tracked vulnerabilities.

CVE-2025-54971 MEDIUM
Fortinet FortiADC 6.2.0-7.4.0 - Sensitive Information Exposure via Log File
Nov 18, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-54821 LOW
Fortinet FortiOS 6.4-7.6.3, FortiPAM 1.0-1.6.0, FortiProxy 7.0-7.6.3 - Trusted Host Policy Bypass
Nov 18, 2025
CVSS 1.9
EPSS 0.00
CVE-2025-54660 MEDIUM
Fortinet FortiClientWindows <7.4.3 - Code Injection
Nov 18, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-53843 HIGH
Fortinet FortiOS <7.6.3 - Buffer Overflow
Nov 18, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-48839 MEDIUM
FortiADC <8.0.0 - Authenticated RCE
Nov 18, 2025
CVSS 6.6
EPSS 0.00
CVE-2025-47761 HIGH
Fortinet FortiClientWindows <7.4.3 - Authenticated RCE
Nov 18, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-46776 MEDIUM
Fortinet FortiExtender <7.6.1 - Buffer Overflow
Nov 18, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-46775 MEDIUM
Fortinet FortiExtender <7.6.1 - Info Disclosure
Nov 18, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-46373 HIGH
FortiClientWindows 7.2.0-7.2.8 - Authenticated Heap-based Buffer Overflow via fortips_74.sys
Nov 18, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-46215 MEDIUM
Fortinet FortiSandbox <5.0.1 - Info Disclosure
Nov 18, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-64446 CRITICAL KEVNUCLEI
Fortinet FortiWeb unauthenticated RCE
Nov 14, 2025
CVSS 9.8
EPSS 0.93
CVE-2025-54658 HIGH
FortiDLP Agent 10.3.1-11.5.1 - Authenticated Path Traversal via Outlookproxy Plugin
Oct 16, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-53951 MEDIUM
Fortinet FortiDLP Agent 10.3.1-11.5.1 - Authenticated Path Traversal via Outlookproxy Plugin
Oct 16, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-53950 MEDIUM
Fortinet FortiDLP Agent - Info Disclosure
Oct 16, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-46752 MEDIUM
Fortinet FortiDLP <12.0.5 - Info Disclosure
Oct 16, 2025
CVSS 4.4
EPSS 0.00
CVE-2025-59921 MEDIUM
FortiADC 6.2.0-7.4.0 - Authenticated Exposure of Sensitive Information via HTTP Requests
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-58903 LOW
Fortinet FortiOS <7.6.3 & <=7.4.7 - Unchecked Return Value
Oct 14, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-58325 HIGH
FortiOS <7.6.0 - Privilege Escalation
Oct 14, 2025
CVSS 8.2
EPSS 0.00
CVE-2025-58324 MEDIUM
FortiSIEM 6.2.0-7.2.2 - Authenticated Stored Cross-Site Scripting via Crafted HTTP Requests
Oct 14, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-57741 HIGH
FortiClientMac 7.0.0-7.4.3 - Incorrect Permission Assignment for Critical Resource via LaunchDaemon Hijacking
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-57740 HIGH
FortiOS < 7.2.11, FortiPAM < 1.4.3, FortiProxy < 7.4.4 - Heap-based Buffer Overflow via RDP Bookmark
Oct 14, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-57716 MEDIUM
FortiClient 7.0.0-7.4.3 - DLL Hijacking via Online Installer Installation Folder
Oct 14, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-54973 MEDIUM
FortiAnalyzer 7.0.9-7.0.12, 7.2.0-7.2.10, 7.4.0-7.4.6, 7.6.0-7.6.2 - Race Condition via FortiCloud SSO Requests
Oct 14, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-54822 MEDIUM
FortiOS 7.0.0-7.4.1 and FortiProxy 2.0.0-7.4.8 - Authenticated Improper Authorization via Crafted HTTP/HTTPS Requests
Oct 14, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-53845 MEDIUM
Fortinet FortiAnalyzer <7.6.3 - Info Disclosure
Oct 14, 2025
CVSS 6.5
EPSS 0.00