logo

Hackers exploit newly patched Fortinet auth bypass flaws

ID: 393a15ac-e8d0-54c9-851e-4af4705a8597

STIX ID: report--393a15ac-e8d0-54c9-851e-4af4705a8597

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2025-12-16

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

The report details critical Fortinet FortiCloud SSO authentication-bypass vulnerabilities (CVE-2025-59718, CVE-2025-59719) caused by improper SAML signature validation; attackers have been observed exploiting these flaws since December 12 to gain admin access and exfiltrate device configuration files, and Fortinet recommends disabling FortiCloud SSO or upgrading to patched product versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.