CVE-2026-44278: Fortinet FortiClient

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

A use of hard-coded cryptographic key vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.2, FortiClientWindows 7.2 all versions may allow attacker to information disclosure via <insert attack vector here>

Affected products

  • Fortinet FortiClient: from 7.2.0, before 7.4.3 (fixed in 7.4.3)

Published 2026-05-12. Last modified 2026-06-17.