fortiguard.fortinet.com
https://fortiguard.fortinet.com/psirt/FG-IR-26-162 CVE-2026-71408
MEDIUM
Fortinet FortiOS Allocation of Resources Without Limits or Throttling Denial of Service
Record summary
CVE-2026-71408 has a selected CVSS score of 5.0 (medium).
Description
A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack vector here>
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 12, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
FortiOSBrowse Fortinet / FortiOSDefault status: unaffected | CVE List | 7.6.0 to ≤ 7.6.6 | affected |
| 7.4.0 to ≤ 7.4.12 | affected | ||
| 7.2.0 to ≤ 7.2.13 | affected | ||
| 7.0.0 to ≤ 7.0.19 | affected | ||
| 6.4.0 to ≤ 6.4.16 | affected |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-71408