CVE-2025-59809: SSRF
A server-side request forgery (ssrf) vulnerability [CWE-918] vulnerability in Fortinet FortiSOAR PaaS 7.6.4, FortiSOAR PaaS 7.6.0 through 7.6.2, FortiSOAR PaaS 7.5.0 through 7.5.2, FortiSOAR PaaS 7.4 all versions, FortiSOAR PaaS 7.3 all versions, FortiSOAR on-premise 7.6.4, FortiSOAR on-premise 7.6.0 through 7.6.2, FortiSOAR on-premise 7.5.0 through 7.5.2, FortiSOAR on-premise 7.4 all versions, FortiSOAR on-premise 7.3 all versions may allow an authenticated attacker to discover services running on local ports via crafted requests.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59809?
CVE-2025-59809 is classified as a critical vulnerability due to its potential to enable server-side request forgery attacks.
How do I fix CVE-2025-59809?
To remediate CVE-2025-59809, ensure that you update your Fortinet FortiSOAR PaaS or on-premise version to the latest patched release.
What versions are affected by CVE-2025-59809?
CVE-2025-59809 affects FortiSOAR PaaS versions 7.6.0 through 7.6.4, 7.5.0 through 7.5.2, and all versions of 7.4 and 7.3, as well as FortiSOAR on-premise versions listed.
What is a server-side request forgery (SSRF) vulnerability?
A server-side request forgery (SSRF) vulnerability allows an attacker to make unauthorized requests from the server, potentially exposing sensitive data.
What should I do if my system is vulnerable to CVE-2025-59809?
If your system is vulnerable to CVE-2025-59809, you should immediately upgrade to a non-vulnerable version of Fortinet FortiSOAR.