CVE Tools
Back to feed
Exploited in the wild FortiGate auth-bypass FortiVPN Fortinet network-edge

Fortinet Responds to FortiBleed Campaign

SecurityWeek·By Ionut Arghire··1 min read
CVE Tools coverage

Fortinet has responded to the ongoing FortiBleed campaign, which is reportedly targeting its customers’ firewalls and VPNs with large-scale credential harvesting rather than exploiting a new product vulnerability. The activity centers on reusing previously obtained credentials and brute-force attempts against devices with weak password practices and missing multi-factor authentication, affecting Fortinet deployments across many regions. The vendor says earlier FortiCloud SSO login bypass issues—CVE-2026-24858 and CVE-2025-59718/CVE-2025-59719—are the related defects that were patched, underscoring why users must complete the recommended remediations and harden admin/VPN access.