Skip to main content
See every side of every news story
Published loading...Updated

Fortinet Customers Told to Update Immediately Following Major Security Issue - Here's What We Know

Summary by World NEWS Live
(Image credit: Getty Images) CVE-2025-64446 allows unauthenticated attackers to run admin commands on FortiWeb WAF systemsActively exploited in the wild; affects versions 7.0.0–8.0.1, patched in 8.0.2CISA added it to KEV; Fortinet urges immediate patching or disabling internet-facing HTTP/HTTPS interfacesFortinet has released a fix for a critical vulnerability in its FortiWeb web application firewall (WAF), and has urged customers to update imm…
DisclaimerThis story is only covered by news sources that have yet to be evaluated by the independent media monitoring agencies we use to assess the quality and reliability of news outlets on our platform. Learn more here.Cross Cancel Icon

7 Articles

In its security advisory FG-IR-25-910, published on November 14, 2025, Fortinet reported a critical vulnerability in FortiWeb, known as CVE-2025-64446, which would be the subject of active operations for more than a month. This "path-cross" fault allows unauthenticated people to execute administrative orders on Fortinet's web application firewall [...] The post A silent fix for FortiWeb made public appeared first on ChannelNews.

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • There is no tracked Bias information for the sources covering this story.

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

Help Net Security broke the news in on Sunday, November 16, 2025.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal