๐ฅ This vulnerability is being actively exploited in the wild (CISA Known Exploited Vulnerabilities catalog)
CVE-2025-68686: Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Summary
Fortinet FortiOS has a vulnerability that lets remote attackers bypass a security patch and access sensitive information, but only after they've already compromised the system through another vulnerability first. The flaw involves bypassing a patch for a symbolic link persistency mechanism (a technique where attackers create shortcuts to maintain access after exploiting a system) using specially crafted HTTP requests.
Solution / Mitigation
The source states to 'Apply mitigations in accordance with vendor instructions' and to follow CISA's BOD 26-04 guidance for patching based on risk. Organizations should check the Fortinet security advisory at https://fortiguard.fortinet.com/psirt/FG-IR-25-934 for specific vendor mitigations, or discontinue use of the product if mitigations are unavailable.
Vulnerability Details
EPSS: 0.5%
Yes
๐ฅ Actively Exploited
July 26, 2026
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-68686
First tracked: July 27, 2026 at 02:00 PM
Classified by LLM (prompt v3) ยท confidence: 95%