logo

Fortinet customers confront actively exploited zero-day, with a full patch still pending

ID: 735e96a3-a7e7-5466-bfd3-be7c74d77a29

STIX ID: report--735e96a3-a7e7-5466-bfd3-be7c74d77a29

Feed Name: CyberScoop

Threat Score
85/100

Date Published: 2026-04-06

Date Updated: 2026-04-21

Author: Matt Kapko

...
...

Fortinet released an emergency hotfix for a critical zero-day (CVE-2026-35616, CVSS 9.8) in FortiClient EMS that is being actively exploited in the wild; CISA added it to its known exploited vulnerabilities catalog, nearly 2,000 publicly exposed EMS instances were found by Shadowserver, and Fortinet plans a more comprehensive update while investigations and remediation continue.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.