CVE-2025-68686 CRITICAL

Fortinet FortiOS Vulnerability
Generated: 10 Oct 2026 19:23 • CVE Threat Intelligence

Description

Fortinet FortiOS contains an exposure of sensitive information to an unauthorized actor vulnerability. This may allow a remote unauthenticated attacker to bypass the patch developed for the symbolic link persistency mechanism observed in some post-exploit cases, via crafted HTTP requests. An attacker would need first to have compromised the product via another vulnerability, at filesystem level.

9.8
CVSS CRITICAL

Details

Published
27 Jul 2026 00:00
Modified
N/A
Source
CIRCL
Vendor
Fortinet
Product
FortiOS
Fix Version
Vendor Patch / Mitigation Available

References