← Back to Vulnerability Reports CVE Intelligence

CVE-2026-0891

Fortinet FortiOS 7.2-7.4HIGH · CVSS 8.1No exploitation reported
CVSS8.1 NVD 3.1
SeverityHIGH
ExploitationNo exploitation reported
Triage statusNo Known Exploit
ActionPatch this week
CVSS vectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected product

Fortinet FortiOS 7.2-7.4

Remediation Steps

  1. Upgrade FortiOS to version 7.4.5 or 7.2.9 immediately.
  2. If upgrade is not immediately possible, disable HTTP/HTTPS administrative access from the internet.
  3. Audit FortiGate admin accounts for unauthorized new accounts or modified permissions.
  4. Review firewall logs for suspicious authentication attempts from external IPs.
  5. Rotate all FortiGate admin credentials after patching.
🤖 This CVE page is generated by defend.network from NVD, CISA KEV, EPSS, and our verified daily briefings. Severity and exploitation data come from official sources; always verify remediation steps against the official vendor advisory before acting in production.

Get Critical CVE Alerts

Subscribe free and hear about actively exploited CVEs like this one first.