FG-IR-25-795: Format String Vulnerability in CAPWAP fast-failover mode
Published Feb 10, 2026
·Updated
A Use of Externally-Controlled Format String vulnerability [CWE-134] in FortiGate may allow an authenticated admin to execute unauthorized code or commands via specifically crafted configuration.
Affected Software
4 affected componentsFixes available
Fortinet FortiOS>=7.6.0<=7.6.4
Fortinet FortiOS>=7.4.0<=7.4.9
Fortinet FortiOS>=7.2.0<=7.2.11
Fortinet FortiOS>=7.0
Event History
Feb 10, 2026
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of FG-IR-25-795?
The severity of FG-IR-25-795 is considered high due to the risk of unauthorized code execution.
2
How do I fix FG-IR-25-795?
To fix FG-IR-25-795, upgrade FortiOS to version 7.6.5 or higher, or 7.4.10 or higher as applicable.
3
Which versions of FortiOS are affected by FG-IR-25-795?
FG-IR-25-795 affects FortiOS versions from 7.0 to 7.6.4 and from 7.4.0 to 7.4.9.
4
Who is at risk from FG-IR-25-795?
Authenticated administrators of vulnerable FortiGate devices are at risk from FG-IR-25-795.
5
What type of vulnerability is FG-IR-25-795?
FG-IR-25-795 is a Format String Vulnerability that can be exploited by crafted configuration inputs.