VYPR
Unrated severityNVD Advisory· Published Dec 9, 2025· Updated Jan 14, 2026

CVE-2025-59810

CVE-2025-59810

Description

An improper access control vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.2, FortiSOAR PaaS 7.5.0 through 7.5.1, FortiSOAR PaaS 7.4 all versions, FortiSOAR PaaS 7.3 all versions, FortiSOAR on-premise 7.6.0 through 7.6.2, FortiSOAR on-premise 7.5.0 through 7.5.1, FortiSOAR on-premise 7.4 all versions, FortiSOAR on-premise 7.3 all versions may allow information disclosure to an authenticated attacker via crafted requests

Affected products

4
  • Fortinet/FortiSOAR on-premisev5
    cpe:2.3:a:fortinet:fortisoaron-premise:7.6.2:*:*:*:*:*:*:*
    Range: 7.6.0
  • Fortinet/FortiSOAR PaaSv5
    cpe:2.3:a:fortinet:fortisoarpaas:7.6.2:*:*:*:*:*:*:*
    Range: 7.6.0
  • Range: 7.6.0-7.6.2, 7.5.0-7.5.1, 7.4 all, 7.3 all
  • Range: 7.6.0-7.6.2, 7.5.0-7.5.1, 7.4 all, 7.3 all

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.