Fortinet patches multiple products across suite
ANSSI advisory details multiple vulnerabilities across Fortinet products including FortiOS, FortiSIEM, and FortiAuthenticator that could allow code execution and privilege escalation.
The French cybersecurity agency ANSSI (CERT-FR) issued an advisory covering multiple vulnerabilities discovered across a wide range of Fortinet products, including FortiAuthenticator, FortiClientEMS, FortiOS, FortiPAM, FortiProxy, FortiSandbox, FortiSIEM, and FortiSIEMWindowsAgent. The vulnerabilities span several impact categories including arbitrary code execution, privilege escalation, data confidentiality breaches, data integrity compromise, security policy bypass, and indirect remote code injection (XSS).
Eleven CVEs are referenced in the advisory, corresponding to eleven separate Fortinet PSIRT bulletins (FG-IR-26-145 through FG-IR-26-155) published on 14 July 2026. Affected versions span multiple product lines and version branches, indicating broad exposure across Fortinet's security and infrastructure product portfolio. No indication of active exploitation is provided in this advisory; it is a vendor patch notification distributed via ANSSI's standard vulnerability bulletin process.
Organizations running any of the listed Fortinet products should consult the referenced FortiGuard PSIRT bulletins and apply the vendor-supplied patches to remediate the listed CVEs. Given Fortinet products' common use as network security and access-control infrastructure, timely patching is recommended to prevent potential compromise of critical security control points.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0879
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free