Fortinet Fortios vulnerabilities
277 known vulnerabilities affecting fortinet/fortios.
Total CVEs
277
CISA KEV
19
actively exploited
Public exploits
24
Exploited in wild
25
Severity breakdown
CRITICAL25HIGH86MEDIUM156LOW10
Vulnerabilities
Page 13 of 14
CVE-2026-59840P4MEDIUMCVSS 4.3≥ 7.2.0, < 7.4.9≥ 7.6.0, ≤ 7.6.2+4 more2026-07-14
CVE-2026-59840 [MEDIUM] CWE-126 CVE-2026-59840: A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.
A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.5, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker to information disclosure via
nvd
CVE-2017-14190P4MEDIUMCVSS 6.1≤ 5.2.0≥ 5.4.0, ≤ 5.4.7+1 more2018-01-29
CVE-2017-14190 [MEDIUM] CWE-79 CVE-2017-14190: A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and ear
A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and earlier, allows attacker to inject arbitrary web script or HTML via maliciously crafted "Host" header in user HTTP requests.
nvd
CVE-2019-5593P4MEDIUMCVSS 5.5≤ 5.6.10≥ 6.0.0, ≤ 6.0.6+1 more2020-01-23
CVE-2019-5593 [MEDIUM] CWE-755 CVE-2019-5593: Improper permission or value checking in the CLI console may allow a non-privileged user to obtain F
Improper permission or value checking in the CLI console may allow a non-privileged user to obtain Fortinet FortiOS plaint text private keys of system's builtin local certificates via unsetting the keys encryption password in FortiOS 6.2.0, 6.0.0 to 6.0.6, 5.6.10 and below or for user uploaded local certificates via setting an empty password in FortiO
nvd
CVE-2023-46715P4MEDIUMCVSS 4.3≥ 6.2.0, < 7.4.2≥ 7.4.0, ≤ 7.4.1+4 more2025-01-14
CVE-2023-46715 [MEDIUM] CWE-346 CVE-2023-46715: An origin validation error [CWE-346] vulnerability in Fortinet FortiOS IPSec VPN version 7.4.0 thro
An origin validation error [CWE-346] vulnerability in Fortinet FortiOS IPSec VPN version 7.4.0 through 7.4.1 and version 7.2.6 and below allows an authenticated IPSec VPN user with dynamic IP addressing to send (but not receive) packets spoofing the IP of another user via crafted network packets.
nvd
CVE-2024-33510P4MEDIUMCVSS 4.3≥ 7.0.0, < 7.2.9≥ 7.4.0, < 7.4.4+3 more2024-11-12
CVE-2024-33510 [MEDIUM] CWE-358 CVE-2024-33510: An improper neutralization of special elements in output used by a downstream component ('Injection'
An improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability [CWE-74] in FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.16 and below; FortiProxy version 7.4.3 and below, version 7.2.9 and below, version 7.0.16 and below; FortiSASE version 24.2.b SSL-VPN web user interface
nvd
CVE-2025-25250P4MEDIUMCVSS 4.3≥ 6.4.0, < 7.4.8v7.6.0+4 more2025-06-10
CVE-2025-25250 [MEDIUM] CWE-200 CVE-2025-25250: An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiSASE 25.1.c may allow an authenticated user to access full SSL-VPN settings via crafted URL.
nvd
CVE-2025-31514P4MEDIUMCVSS 4.3≥ 6.4.0, < 7.6.4≥ 7.6.0, ≤ 7.6.2+4 more2025-10-14
CVE-2025-31514 [MEDIUM] CWE-532 CVE-2025-31514: A insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.6.0 through 7
A insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker
nvd
CVE-2021-43074P4MEDIUMCVSS 4.3≥ 6.0.0, < 6.4.9≥ 7.0.0, < 7.0.4+4 more2023-02-16
CVE-2021-43074 [MEDIUM] CWE-347 CVE-2021-43074: An improper verification of cryptographic signature vulnerability [CWE-347] in FortiWeb 6.4 all vers
An improper verification of cryptographic signature vulnerability [CWE-347] in FortiWeb 6.4 all versions, 6.3.16 and below, 6.2 all versions, 6.1 all versions, 6.0 all versions; FortiOS 7.0.3 and below, 6.4.8 and below, 6.2 all versions, 6.0 all versions; FortiSwitch 7.0.3 and below, 6.4.10 and below, 6.2 all versions, 6.0 all versions; FortiProxy 7
nvd
CVE-2017-7734P4MEDIUMCVSS 5.4v5.4.0v5.4.1+3 more2017-09-12
CVE-2017-7734 [MEDIUM] CWE-79 CVE-2017-7734: A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 allows attacke
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 allows attackers to execute unauthorized code or commands via 'Comments' while saving Config Revisions.
nvd
CVE-2023-29178P4MEDIUMCVSS 4.3≥ 6.0.0, ≤ 6.0.17≥ 6.2.0, ≤ 6.2.15+3 more2023-06-13
CVE-2023-29178 [MEDIUM] CWE-824 CVE-2023-29178: A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 thro
A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.
nvd
CVE-2022-23442P4MEDIUMCVSS 4.3≥ 6.2.0, ≤ 6.2.11≥ 6.4.0, ≤ 6.4.8+1 more2022-08-03
CVE-2022-23442 [MEDIUM] CVE-2022-23442: An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 t
An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 through 6.4.8 and 7.0.0 through 7.0.5 may allow an authenticated attacker with a restricted user profile to gather the checksum information about the other VDOMs via CLI commands.
nvd
CVE-2023-33301P4MEDIUMCVSS 4.3≥ 7.2.0, ≤ 7.2.4v7.4.02023-10-10
CVE-2023-33301 [MEDIUM] CWE-284 CVE-2023-33301: An improper access control vulnerability in Fortinet FortiOS 7.2.0 - 7.2.4 and 7.4.0 allows an attac
An improper access control vulnerability in Fortinet FortiOS 7.2.0 - 7.2.4 and 7.4.0 allows an attacker to access a restricted resource from a non trusted host.
nvd
CVE-2024-40593P4MEDIUMCVSS 4.4v7.0.14v7.2.7+2 more2025-12-11
CVE-2024-40593 [MEDIUM] CWE-320 CVE-2024-40593: A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7
A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.5, FortiManager 7.0 all versions, FortiManager 6.4 all versions, FortiOS 7.6.0, FortiOS 7.4.4, FortiOS
nvd
CVE-2025-62439P4MEDIUMCVSS 4.2≥ 7.6.0, ≤ 7.6.4≥ 7.4.0, ≤ 7.4.9+2 more2026-02-10
CVE-2025-62439 [MEDIUM] CWE-940 CVE-2025-62439: An Improper Verification of Source of a Communication Channel vulnerability [CWE-940] vulnerability
An Improper Verification of Source of a Communication Channel vulnerability [CWE-940] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2 all versions, FortiOS 7.0 all versions may allow an authenticated user with knowledge of FSSO policy configurations to gain unauthorized access to protected network resou
nvd
CVE-2014-0351P4MEDIUMCVSS 5.4≤ 4.3.15v4.3.10+9 more2014-09-10
CVE-2014-0351 [MEDIUM] CWE-310 CVE-2014-0351: The FortiManager protocol service in Fortinet FortiOS before 4.3.16 and 5.x before 5.0.8 on FortiGat
The FortiManager protocol service in Fortinet FortiOS before 4.3.16 and 5.x before 5.0.8 on FortiGate devices does not prevent use of anonymous ciphersuites, which makes it easier for man-in-the-middle attackers to obtain sensitive information or interfere with communications by modifying the client-server data stream.
nvd
CVE-2022-42469P4MEDIUMCVSS 4.3≥ 7.0.0, < 7.0.11≥ 7.2.0, < 7.2.4+2 more2023-04-11
CVE-2022-42469 [MEDIUM] CWE-183 CVE-2022-42469: A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, ve
A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, version 7.0.9 and below Policy-based NGFW Mode may allow an authenticated SSL-VPN user to bypass the policy via bookmarks in the web portal.
nvd
CVE-2013-7182P4MEDIUMCVSS 4.3v5.0.52014-02-04
CVE-2013-7182 [MEDIUM] CWE-79 CVE-2013-7182: Cross-site scripting (XSS) vulnerability in firewall/schedule/recurrdlg in Fortinet FortiOS 5.0.5 al
Cross-site scripting (XSS) vulnerability in firewall/schedule/recurrdlg in Fortinet FortiOS 5.0.5 allows remote attackers to inject arbitrary web script or HTML via the mkey parameter.
nvd
CVE-2024-23111P4MEDIUMCVSS 4.8≥ 7.0.0, < 7.0.14≥ 7.2.0, < 7.2.8+4 more2024-06-11
CVE-2024-23111 [MEDIUM] CWE-79 CVE-2024-23111: An improper neutralization of input during web page Generation ('Cross-site Scripting') vulnerabilit
An improper neutralization of input during web page Generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiOS version 7.4.3 and below, 7.2 all versions, 7.0 all versions and FortiProxy version 7.4.2 and below, 7.2 all versions, 7.0 all versions reboot page may allow a remote privileged attacker with super-admin access to execute JavaScrip
nvd
CVE-2014-8616P4MEDIUMCVSS 4.3v5.2.0v5.2.1+1 more2015-05-12
CVE-2014-8616 [MEDIUM] CWE-79 CVE-2014-8616: Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiOS 5.2.x before 5.2.3 allow rem
Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiOS 5.2.x before 5.2.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) user group or (2) vpn template menus.
nvd
CVE-2020-15936P4MEDIUMCVSS 4.5≥ 5.6.0, ≤ 5.6.13≥ 6.0.0, ≤ 6.0.11+2 more2022-03-01
CVE-2020-15936 [MEDIUM] CWE-20 CVE-2020-15936: A improper input validation in Fortinet FortiGate version 6.4.3 and below, version 6.2.5 and below,
A improper input validation in Fortinet FortiGate version 6.4.3 and below, version 6.2.5 and below, version 6.0.11 and below, version 5.6.13 and below allows attacker to disclose sensitive information via SNI Client Hello TLS packets.
nvd