Attackers target critical FortiSandbox flaws as CISA issues patch order
ID: d77571a1-415f-5139-afe7-5e089cfdf3b4
STIX ID: report--d77571a1-415f-5139-afe7-5e089cfdf3b4
Feed Name: The Register (Security)
Fortinet disclosed two critical FortiSandbox command-injection vulnerabilities (CVE-2026-39808, CVE-2026-25089; CVSS 9.1) that allow unauthenticated remote command execution and have been added by CISA to its Known Exploited Vulnerabilities catalog; security firm Defused reported observed exploitation attempts (including against CVE-2026-39813) though some exploits may be broken. The report also flags a separate critical SharePoint Server deserialization flaw (CVE-2026-58644; CVSS 9.8) that enables remote code execution by authenticated Site Owners, and reminds federal agencies of BOD 26-04 patching obligations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
