Fortinet warns of critical vulnerabilities allowing authentication bypass via FortiCloud SSO
518/68 Thursday, December 11, 2025 Fortinet has issued a security advisory and released updates to patch two critical vulnerabilities-CVE-2025-59718 and CVE-2025-59719-affecting FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager. The flaws stem from improper verification of cryptographic signatures in SAML messages, allowing attackers to craft malicious SAML assertions to bypass authentication and gain administrative access through the FortiCloud […]
