Fortinet FortiGuard PSIRT
Fortinet’s FortiGuard PSIRT publishes advisories for FortiOS, FortiGate, FortiManager, FortiProxy and related products. Fortinet edge devices are among the most frequently exploited in the wild, so new FortiGuard advisories deserve immediate triage.
CSIRTS.com ingests Fortinet FortiGuard PSIRT every 3 hours, normalizes each advisory into a common schema and cross-references every CVE against the CISA KEV catalog and public exploit datasets. Publishes PSIRT advisories for Fortinet products. Also available via RSS, JSON API and the MCP server.
Latest from Fortinet FortiGuard PSIRT
Stack buffer overflow in WAD
Server-Side Request Forgery (SSRF)
Heap overflow in kernel driver due to missing size validation
HTTP/2 Bomb CVE-2026-49975
FGFM Authentication Weakening via CLI Configuration
Content-Encoding WAF Evasion
Broken access control in the RADIUS type admin group
Unauthenticated VNC access exposed on all interfaces
Supers override fails to properly override supervisor address
Stack Buffer Overflow in Log Report
SSL-VPN Reflected XSS
Path traversal in CLI command allows deletion of root file system
Out of bounds read in GUI
Missed certificate verification in AD Connector communication with FortiClient EMS
Header injection in captive portal authentication form
Header injection in Web Filter warning page
Cross-Site Scripting in Domain parameter
Buffer overread in authd and wad daemon
Second-Order OS Command Injection via JSON Input on start vnc feature
Restricted CLI escape using Lua
Improper access control in API endpoints
Linux Kernel vulnerability Dirty Frag
Linux Kernel Vulnerability copy.fail - CVE-2026-31431
User controlled SQL commands
Browse all 69 advisories from Fortinet FortiGuard PSIRT →
Never miss a Fortinet FortiGuard PSIRT advisory. The daily briefing covers every new advisory from this source — alongside the other feeds we watch for you. Subscribe free — one email every morning after 06:00 UTC, one-click unsubscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.