All SAML SSO implementations, including FortiCloud SSO, are vulnerable to authentication bypass and malicious configuration ...
Fortinet released updates for an actively exploited FortiOS SSO authentication bypass flaw, CVE-2026-24858, now listed by CISA in KEV.
Attackers have been targeting various Fortinet products for some time. A functional security update is still missing.
Fortinet has confirmed a new, actively exploited critical FortiCloud single sign-on (SSO) authentication bypass vulnerability ...
The cybersecurity company pointed out that the fresh campaign resembles December 2025 attacks targeting CVE-2025-59718 and CVE-2025-59719, two critical-severity defects impacting the FortiCloud SSO ...
Fortinet has released patches for CVE-2026-24858, an authentication bypass exploited in the wild to compromise devices.
CVE-2026-24858 affects dozens of Fortinet products and has already been added to CISA’s list of known exploited ...
This story was originally published on Cybersecurity Dive. To receive daily news and insights, subscribe to our free daily Cybersecurity Dive newsletter. Fortinet warned that customer organizations ...
More work for admins on the cards as they await a full dump of fixes Things aren't over yet for Fortinet customers – the ...
To stop the ongoing attacks, the cybersecurity vendor took the drastic step of temporarily disabling FortiCloud single ...
The NEC XON offices. Image sourced from ITWeb.com. NEC XON has announced the expansion of its managed services portfolio to include comprehensive Fortinet device management. The device management ...