logo

FortiSandbox SSRF Vulnerability Allow Attacker to proxy Internal Traffic via Crafted HTTP Requests

ID: d0e43a6c-fd14-552f-83cb-8ebd552c172b

STIX ID: report--d0e43a6c-fd14-552f-83cb-8ebd552c172b

Feed Name: cybersecurityNews.com

Threat Score
30/100

Date Published: 2026-01-13

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Fortinet disclosed an SSRF vulnerability (CVE-2025-67685) in FortiSandbox's GUI that allows authenticated high-privilege users to proxy HTTP requests to internal plaintext endpoints; the issue is rated low severity (CVSSv3 3.4). Affected releases include FortiSandbox 5.0.0–5.0.4 and all listed 4.x/4.2/4.0 branches; Fortinet recommends immediate upgrades or migration to fixed releases. No evidence of active exploitation was reported, but administrators should audit GUI logs for anomalous internal fetches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.