Fortinet FortiWeb-Schwachstellen ermöglichen Übernahme
heise reports multiple critical vulnerabilities in Fortinet products, including FortiWeb, FortiManager, FortiManager Cloud, FortiClient Windows, FortiOS, and FortiPAM. The issues could allow unauthenticated attackers to log in with arbitrary credentials (CVE-2026-26035), bypass authentication via crafted FGFM requests with a valid certificate (CVE-2026-70468), or trigger code execution via malicious DNS-related packets (CVE-2026-70465). Fortinet released patches for affected versions.





