CVE-2026-24641 | Fortinet FortiWeb up to 7.0.12/7.2.12/7.4.12/7.6.6/8.0.2 HTTP Request null pointer dereference (FG-IR-26-089)
A vulnerability classified as problematic was found in Fortinet FortiWeb up to 7.0.12/7.2.12/7.4.12/7.6.6/8.0.2. This issue affects some unknown processing of the component HTTP Request Handler. The manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2026-24641. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.