FortiSandbox SSRF Vulnerability Allow Attacker to proxy Internal Traffic via Crafted HTTP Requests
ID: d0e43a6c-fd14-552f-83cb-8ebd552c172b
STIX ID: report--d0e43a6c-fd14-552f-83cb-8ebd552c172b
Feed Name: cybersecurityNews.com
Fortinet disclosed an SSRF vulnerability (CVE-2025-67685) in FortiSandbox's GUI that allows authenticated high-privilege users to proxy HTTP requests to internal plaintext endpoints; the issue is rated low severity (CVSSv3 3.4). Affected releases include FortiSandbox 5.0.0–5.0.4 and all listed 4.x/4.2/4.0 branches; Fortinet recommends immediate upgrades or migration to fixed releases. No evidence of active exploitation was reported, but administrators should audit GUI logs for anomalous internal fetches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
