Medium severity4.9NVD Advisory· Published Sep 8, 2026· Updated Sep 8, 2026
CVE-2026-22575
CVE-2026-22575
Description
An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, FortiManager Cloud 7.2 all versions may allow an administrator to bypass the approval process for workflow sessions via crafted HTTP or HTTPs requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 7.6.0 through 7.6.4, 7.4.0 through 7.4.10, 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, FortiManager Cloud 7.2 all versions
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.