Skip to content
ThreatCluster

CISA Reports Exploitation of FortiWeb WAF Vulnerability for Admin Access

First seen 18 Nov 2025, 09:16 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

CISA has reported active attacks exploiting a vulnerability in Fortinet's FortiWeb Web Application Firewall (WAF) that allows unauthorized admin access. Organizations using FortiWeb are at risk, and immediate action is advised to mitigate potential breaches. The vulnerability has been actively targeted in the wild.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

More articles in this cluster (2)