A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
A critical vulnerability (CVE-2025-64155) in Fortinet's FortiSIEM platform allows unauthenticated remote code execution via crafted TCP requests. This OS command injection flaw affects the phMonitor service, which is…
Key cybersecurity statutes, including the Cybersecurity Information-Sharing Act of 2015, are at risk of lapsing due to a potential government shutdown. This situation arises from stalled funding legislation for the…
Fortinet has patched critical vulnerabilities affecting FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager. These security defects, which allow for authentication bypass and could lead to configuration leaks and code…
Fortinet has released security updates for critical vulnerabilities in FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager that could allow attackers to bypass FortiCloud SSO authentication. The vulnerabilities,…
Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…
Oracle's January 2026 CPU release includes 337 new security patches addressing approximately 230 unique vulnerabilities across over 30 products. This update is part of ongoing efforts to enhance security measures…
Fortinet has introduced FortiSOC, a unified cloud-based security operations center (SOC) platform designed to streamline security operations. The platform integrates six key security functions into a single…