Fortinet FortiWeb Flaw Actively Exploited in the Wild Before Company’s Silent Patch

Nov 14, 2025

Cybersecurity researchers are sounding the alert about an authentication bypass vulnerability in Fortinet Fortiweb WAF that could allow an attacker to take over admin accounts and completely compromise a device.
“The watchTowr team is seeing active, indiscriminate in-the-wild exploitation of what appears to be a silently patched vulnerability in Fortinet’s FortiWeb product,” Benjamin Harris,

Get Free Report & Network Analysis

Please check your email for the free report.