Server-Side Request Forgery (SSRF)
CVSSv3 Score: 3.4 A Server-Side request forgery (SSRF) [CWE-918] vulnerability in FortiSIEM GUI may allow an authenticated attacker to send HTTP requests originating from the targeted device via specially crafted HTTP requests Revised on 2026-08-12 00:00:00
CSIRTS triage
- What
- A server-side request forgery vulnerability in FortiSIEM GUI allows an authenticated attacker to send HTTP requests from the targeted device via specially crafted requests.
- Who is affected
- FortiSIEM deployments accessible to authenticated users.
- Urgency
- Low to moderate urgency; exploitation requires prior authentication and impact is limited to internal request forgery.
- Action
- Apply Fortinet patches and implement network segmentation to restrict outbound HTTP requests from FortiSIEM.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch FortiSIEM
Get an email when a new FortiSIEM advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://fortiguard.fortinet.com/psirt/FG-IR-26-159
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-704670.26% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 18% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-70467 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
Recent advisories for Server-Side Request Forgery
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- highCVE-2026-17123: The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery i…nvd · 2026-08-16
- mediumCVE-2026-74247: A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository wri…nvd · 2026-08-14
- highCVE-2026-69101: Datavane TIS v5.0.0 contains an XML external entity (XXE) injection vulnerability that allows …nvd · 2026-08-14
- highCVE-2026-72855: Budibase before 3.40.0 contains server-side request forgery vulnerabilities in OpenAPI query i…nvd · 2026-08-13
- highCVE-2026-73530: Flyto2 Core before 2.28.0 contains a server-side request forgery guard bypass vulnerability th…nvd · 2026-08-13
- highCVE-2026-72777: Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POS…nvd · 2026-08-13
More from Fortinet FortiGuard PSIRT
- unknownContent-Encoding WAF Evasion2026-08-12
- unknownFGFM Authentication Weakening via CLI Configuration2026-08-12
- unknownHeap overflow in kernel driver due to missing size validation2026-08-12
- unknownStack buffer overflow in WAD2026-08-12
- unknownHTTP/2 Bomb CVE-2026-499752026-08-12