f
fortinet
Security Risk Profile
52
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 1000 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 16, 2023 to present
1000
Total CVEs
413
Critical+High
71
Exploited
38
Unpatched
Threat Assessment
Avg CVSS
6.8
Base severity
Avg EPSS
4%
Exploit probability
Unpatched
38
Critical/High
Risk Level
52/100
medium
⚠️ 71 Active Exploits⚡ 34 Zero-Days📈 7 in Last 30 Days
Severity Distribution
Critical
96High
317Medium
408Low
53Exploit Likelihood
>50% chance
120-50%
15-20%
0<5%
23Age Distribution
Common Weaknesses (CWE)
1
OS Command Injection
90
2
Command Injection
88
3
Path Traversal
72
4
Buffer Overflow
68
5
XSS
58
Most Affected Products
1. Fortinet FortiOS1480
2. Fortinet FortiManager824
3. Fortinet FortiProxy814
4. Fortinet FortiAnalyzer620
5. Fortinet FortiSandbox449
Recent Vulnerabilities
See more →CVE-2026-26035
CVSS 9.8critical
Aug 12, 2026🔧 No Patch
CVE-2026-70467
CVSS 3.8low
Aug 12, 2026🔧 No Patch
CVE-2026-70466
CVSS 5.3medium
Aug 12, 2026🔧 No Patch
CVE-2026-70465
CVSS 8.1high
Aug 12, 2026🔧 No Patch
CVE-2026-71408
CVSS 5.3medium
UI DoS attack
Aug 12, 2026🔧 No Patch
CVE-2026-70468
CVSS 8.1high
FGFM Authentication Weakening via CLI Configuration
Aug 12, 2026🔧 No Patch
CVE-2026-71407
CVSS 5.6medium
Stack buffer overflow in WAD
Aug 12, 2026🔧 No Patch
CVE-2026-59838
CVSS 5.9medium
Jul 15, 2026🔧 No Patch
https://reddit.com/r/cybersecurity/comments/1uwwrla/fortisandbox_cve202659835_exposes_sandbox_vnc/
unknown
FortiSandbox CVE-2026-59835 exposes sandbox VNC sessions without authentication
Jul 15, 2026🔧 No Patch
CVE-2026-59840
CVSS 4.3medium
Buffer overread in authd and wad daemon
Jul 14, 2026🔧 No Patch
Monitor fortinet in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.