logo

Attackers target critical FortiSandbox flaws as CISA issues patch order

ID: d77571a1-415f-5139-afe7-5e089cfdf3b4

STIX ID: report--d77571a1-415f-5139-afe7-5e089cfdf3b4

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2026-07-17

Date Updated: 2026-07-23

...
...

Fortinet disclosed two critical FortiSandbox command-injection vulnerabilities (CVE-2026-39808, CVE-2026-25089; CVSS 9.1) that allow unauthenticated remote command execution and have been added by CISA to its Known Exploited Vulnerabilities catalog; security firm Defused reported observed exploitation attempts (including against CVE-2026-39813) though some exploits may be broken. The report also flags a separate critical SharePoint Server deserialization flaw (CVE-2026-58644; CVSS 9.8) that enables remote code execution by authenticated Site Owners, and reminds federal agencies of BOD 26-04 patching obligations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.