High severity8.1NVD Advisory· Published Aug 12, 2026· Updated Sep 8, 2026
CVE-2026-70468
CVE-2026-70468
Description
A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManager 7.2.5 through 7.2.9, FortiManager Cloud 7.6.1, FortiManager Cloud 7.4.3 through 7.4.5, FortiManager Cloud 7.2.5 through 7.2.9 may allow attacker to improper access control via
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 7.6.1, 7.4.3-7.4.5, 7.2.5-7.2.9 (FortiManager and FortiManager Cloud)
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-26-160nvdVendor AdvisoryMitigation
News mentions
4- ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and MoreThe Hacker News · Aug 17, 2026
- Cyber Security Weekly Newsletter – Outlook RCE, Palo Alto, Cisco 0-day and Windows 0-Day Flaws +20 StoriesCyber Security News · Aug 16, 2026
- Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClientCyber Security News · Aug 13, 2026
- Fortinet Patches Authentication Flaws in FortiWeb and FortiManagerSecurityWeek · Aug 13, 2026