Vendor
Fortinet, page 2
As of , 31 Fortinet vulnerabilities are on CISA's list of exploited vulnerabilities, 14 of them used in ransomware campaigns; 8 were added in 2026. Patch first: CVE-2026-25089.
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 26 | CVE-2019-6693Use of Hard-Coded Credentials | Fortinet FortiOS | Patch this weekRansomware use | 0.06 | ||
| 27 | CVE-2025-68686Exposure of Sensitive Information to an Unauthorized Actor | Fortinet FortiOS | Patch soon | 0.30 | ||
| 28 | CVE-2025-32756Stack-Based Buffer Overflow | Fortinet Multiple Products | Patch soon | 0.30 | ||
| 29 | CVE-2026-35616Improper Access Control | Fortinet FortiClient EMS | Patch soon | 0.09 | ||
| 30 | CVE-2022-41328Path Traversal | Fortinet FortiOS | Patch soon | 0.11 | ||
| 31 | CVE-2021-44168Arbitrary File Download | Fortinet FortiOS | Patch soon | 0.01 |