Skip to content
Active Exploitation Of Fortinet SSO Flaw Targets Firewalls For Admin Takeover

Active Exploitation Of Fortinet SSO Flaw Targets Firewalls For Admin Takeover

Gbhackers •Varshini • January 22, 2026

Threat actors actively exploit critical Fortinet vulnerabilities CVE-2025-59718 and CVE-2025-59719 to bypass FortiCloud SSO authentication on firewalls and proxies. These flaws allow unauthenticated attackers to craft malicious SAML messages, gaining admin access on internet-exposed devices. Fortinet disclosed them on December 9, 2025, with CVSS scores of 9.8, and CISA added CVE-2025-59718 to its Known Exploited […]

Extracted Entities

Companies (1)

Platforms (1)