Product of Fortinet
FortiOS and FortiProxy
As of , 4 Fortinet FortiOS and FortiProxy vulnerabilities are on CISA's list of exploited vulnerabilities, 4 of them used in ransomware campaigns; 0 were added in 2026. Patch first: CVE-2024-55591.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2024-55591Authentication Bypass | Fortinet FortiOS and FortiProxy | Patch this weekRansomware use; EPSS 0.94 | 0.94 | ||
| 2 | CVE-2018-13382Improper Authorization | Fortinet FortiOS and FortiProxy | Patch this weekRansomware use; EPSS 0.82 | 0.82 | ||
| 3 | CVE-2018-13383Out-of-bounds Write | Fortinet FortiOS and FortiProxy | Patch this weekRansomware use | 0.34 | ||
| 4 | CVE-2025-24472Authentication Bypass | Fortinet FortiOS and FortiProxy | Patch this weekRansomware use | 0.07 |
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2022 | 2 |
| 2023 | none |
| 2024 | none |
| 2025 | 2 |
| 2026 | none |