CVE-2026-24858 | Fortinet FortiAnalyzer/FortiOS/FortiManager authentication bypass (FG-IR-26-060 / EUVD-2026-4712)
A vulnerability classified as critical has been found in Fortinet FortiAnalyzer, FortiOS and FortiManager. Affected by this issue is some unknown functionality. This manipulation causes authentication bypass using alternate channel.
The identification of this vulnerability is CVE-2026-24858. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.