Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

CISA Adds Fortinet Vulnerability to KEV Catalog After Active Exploitation

On December 16, 2025, the Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2025-59718 to its Known Exploited Vulnerabilities (KEV) catalog. Organizations are required to implement necessary remediation measures by December 23, 2025, due…

On December 16, 2025, the Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2025-59718 to its Known Exploited Vulnerabilities (KEV) catalog. Organizations are required to implement necessary remediation measures by December 23, 2025, due to the active exploitation and immediate threat posed by this vulnerability.

The vulnerability affects several Fortinet security products, including FortiOS, FortiSwitchMaster, FortiProxy, and FortiWeb . It involves improper verification of cryptographic signatures, enabling unauthenticated attackers to bypass FortiCloud Single Sign-On (SSO) authentication through specially crafted SAML messages.

This authentication bypass provides unauthorized network access without valid credentials.

Fortinet has issued advisories addressing the issue, urging administrators to apply all available patches immediately.

Detail Information

CVE ID CVE-2025-59718

The vulnerability affects several Fortinet security products, including FortiOS, FortiSwitchMaster, FortiProxy, and FortiWeb .
Kyle Mercer · Thehackingpost

CWE Classification CWE-347 (Improper Verification of Cryptographic Signature)

Vulnerability Type Authentication Bypass via SAML

Attack Vector Unauthenticated, Network-based

A related vulnerability, CVE-2025-59719 , addresses the same issue and requires comprehensive patching across affected systems.

Advertisement

CISA's inclusion of this vulnerability in the KEV catalog mandates compliance with federal security guidance, particularly for agencies utilizing cloud services. Organizations should adhere to applicable BOD 22-01 guidance when implementing cloud-based Fortinet solutions.

In cases where immediate patch deployment is not feasible, CISA recommends discontinuing product use until mitigations are verified. Active exploitation signifies that threat actors are leveraging this vulnerability in operational attacks.

Security teams should prioritize remediation of CVE-2025-59718 within their patch management cycles, especially for edge security appliances and web application firewalls exposed to the internet.

Organizations using affected Fortinet products should audit their deployment inventory and initiate emergency patching procedures before the December 23 deadline to prevent credential-free network intrusion.

Based on reporting by Cyber Security News.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories