Known vulnerabilities in Fortinet, Inc FortiWeb 7.4.8

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 10

Security bulletins (10)

Secuity bulletin Severity Status Published
SB2026012392: FortiCloud SSO login authentication bypass in Fortinet products Critical
Patched Exploited
23.01.2026
SB2025121064: FortiCloud SSO login authentication bypass in Fortinet products Critical
Patched Exploited
10.12.2025
SB2025120952: Authentication bypass in FortiWeb High
Patched
09.12.2025
SB2025120951: Use of Password Hash Instead of Password for Authentication in FortiWeb Low
Patched
09.12.2025
SB2025111872: OS Command Injection in FortiWeb High
Patched Exploited
18.11.2025
SB2025111864: Use of hard-coded redis credentials in FortiWeb Low
Patched
18.11.2025
SB20251114107: Unauthenticated path traversal in FortiWeb Critical
Patched Exploited
14.11.2025
SB2025090983: Relative path traversal in FortiWeb Low
Patched
09.09.2025
SB20250812107: Stack-based buffer overflow in FortiWeb Low
Patched
12.08.2025
SB20250812106: OS Command Injection in FortiWeb Low
Patched
12.08.2025