CVE-2025-53379: Fortinet Fortiauthenticator

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthenticated attacker to retrieve sensitive information via a specially crafted request.

Affected products

  • Fortinet Fortiauthenticator: from 6.5.0, up to and including 6.5.7; from 6.6.0, up to and including 6.6.2

Published 2026-07-14. Last modified 2026-09-29.