
Fortinet patched a command injection vulnerability in FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS WEB UI tracked as CVE-2026-25089 with a CVSS score of 9.1. Ivanti fixed two critical flaws in Ivanti Sentry that allowed unauthenticated attackers to execute commands via crafted HTTP requests.
Tap to vote and see what everyone thinks.