Skip to content

Fortinet SSO Vulnerability Actively Exploited to Hack Firewalls and Gain Admin Access

Cybersecuritynews •Guru Baran • January 22, 2026

A critical vulnerability in Fortinet’s Single Sign-On (SSO) feature for FortiGate firewalls, tracked as CVE-2025-59718, is under active exploitation. Attackers are leveraging it to create unauthorized local admin accounts, granting full administrative access to internet-exposed devices. Multiple users have reported identical attack patterns, prompting Fortinet’s PSIRT forensics team to investigate. CVE-2025-59718 affects the FortiCloud SSO […]

Extracted Entities

Platforms (2)