Workflow session email approval process bypass
FG-IR-26-171
CVSSv3 Score: 7.3 An Authentication Bypass Using an Alternate Path or Channel [CWE-288] vulnerability in FortiManager and FortiManager Cloud may allow a remote unauthenticated attacker to impersonate any FortiGate managed by the FortiManager with a specific CLI option set via crafted FGFM requests if the attacker has a valid certificate. Revised on 2026-08-12 00:00:00
The publication date reported by the vendor.
We collected the advisory from the official source.
Our collector saw this advisory during a later source check.