CVE-2025-58034 is a vulnerability tracked across 12 threat clusters and 22 intelligence report mentions on ThreatCluster. First observed November 18, 2025; most recent activity January 2, 2026.
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
Fortinet has identified a zero-day vulnerability, CVE-2025-58034, being actively exploited in cyber attacks. This flaw affects FortiWeb and is part of a broader trend where Fortinet vulnerabilities are frequently…
Fortinet has identified a new zero-day vulnerability, CVE-2025-58034, that is currently being exploited in attacks. This flaw affects FortiWeb and is part of a broader trend of Fortinet vulnerabilities being targeted in…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that a critical vulnerability in Oracle Identity Manager, tracked as CVE-2025-61757, is being actively exploited in the wild. This flaw…
A critical vulnerability in Oracle Identity Manager, tracked as CVE-2025-61757, allows remote code execution (RCE) without authentication. Discovered by Searchlight Cyber researchers, the flaw has been actively…
More than 10,000 Fortinet firewalls remain exposed to a critical two-factor authentication bypass vulnerability (CVE-2020-12812) that has been actively exploited. This flaw, first disclosed in July 2020, continues to…
Fortinet has released security updates for critical vulnerabilities in FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager that could allow attackers to bypass FortiCloud SSO authentication. The vulnerabilities,…
Multiple vulnerabilities have been identified in Fortinet products, with the most critical allowing for arbitrary code execution. Exploitation of these vulnerabilities could enable attackers to execute commands in the…
Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…
More than 25,000 Fortinet devices with FortiCloud SSO enabled are exposed to remote attacks due to a critical authentication bypass vulnerability tracked as CVE-2025-59718. The U.S. has the highest number of affected…