← back
CVE-2025-59719criticalobserved exploitationCWE-347

CVE-2025-59719

55Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Actcvss 9.1epss 29%
from disclosure to weapon
Published on NVDDec 9
VulnCheck+6d
exploitation probability
29%top 2% of all CVEs
observed exploitation
yesVulnCheck
An improper verification of cryptographic signature vulnerability in Fortinet FortiWeb 8.0.0, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4.9 may allow an unauthenticated attacker to bypass the FortiCloud SSO login authentication via a crafted SAML response message.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
Affected products
Fortinet · FortiWeb