Known Vulnerabilities in FortiSOAR




Cross-site scripting in FortiSOAR11 Apr, 2025
Low Patched
FortiSOAR update for libwebp14 Jan, 2025
Critical Patched Public exploit Exploited
Improper authorization in FortiSOAR10 Sep, 2024
Medium Patched
Stored XSS in FortiSOAR14 Aug, 2024
Low Patched
SQL injection in FortiSOAR11 Jun, 2024
Medium Patched
Server-side template injection in FortiSOAR13 Apr, 2023
Medium Patched
Improper access control in FortiSOAR09 Mar, 2023
Medium Patched
Stored XSS in FortiSOAR06 Dec, 2022
Low Patched
Server-side template injection in FortiSOAR06 Sep, 2022
Medium Patched
Multiple vulnerabilities in FortiSOAR06 Sep, 2022
Medium Patched
Improper access control in FortiSOAR03 May, 2022
Medium Patched
FortiSOAR update for Spring4Shell vulnerabilities04 Apr, 2022
Critical Patched Exploited
Remote code execution in FortiSOAR (Apache Log4j component)13 Dec, 2021
Critical Not Patched Exploited