Skip to content
VulniPulse

Fortinet FortiClient Vulnerabilities & Security Advisories

8 advisories tracked · FortiGuard PSIRT Advisories · 2 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Fortinet advisory that VulniPulse classified as FortiClient, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 2 critical, 4 high, 1 medium, 1 low.

Android app · Google Play

Monitor Fortinet CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

FortiGuard PSIRT Advisories

Polled via the official FortiGuard PSIRT RSS feed (filestore.fortinet.com). PSIRT pages are fetched for new items to extract affected and fixed versions.

Latest Fortinet FortiClient advisories

Low2.1Fortinet

Low [CVE-2026-44278] Hardcoded Encryption Key Used for VPN Saved Passwords

CVSSv3 Score: 2.1 A Missing Authorization [CWE-862] in FortiClient Windows may allow an authenticated local attacker to decrypt a currently logged in users VPN password via use of an unprotected DLL function. Revised on 2026-05-12 00:00:00

CVE-2026-44278
FortiClient
May 12, 2026
High7.1Fortinet

High [CVE-2026-39809] Multiple SQL Injections

CVSSv3 Score: 7.1 An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiClientEMS may allow an authenticated attacker to run arbitrary SQL queries on the database via sending crafted requests. Revised on 2026-04-14 00:00:00

CVE-2026-39809
FortiClient
Apr 14, 2026
Medium5.2Fortinet

Medium [CVE-2026-39810] Hardcoded symmetric encryption key for Postgresql

CVSSv3 Score: 5.2 A use of hard-coded cryptographic key vulnerability [CWE 321] in FortiClientEMS may allow an attacker in possession of an encrypted dump of the database to decrypt it. Revised on 2026-04-14 00:00:00

CVE-2026-39810
FortiClient
Apr 14, 2026
Critical9.1Fortinet Exploited CISA KEV

Critical [CVE-2026-35616] API authentication and authorization bypass

CVSSv3 Score: 9.1 An Improper Access Control vulnerability [CWE-284] in FortiClient EMS may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests. Fortinet has observed this to be exploited in the wild and urges vulnerable customers to install the hotfix for FortiClient EMS 7.4.5 and 7.4.6, by following the instructions at: - for FortiClientEMS 7.4.5https://docs.fortinet.com/document/forticlient/7.4.6/ems-release-notes/832484 - for FortiClientEMS 7.4.6Upcoming FortiClientEMS 7.4.7 will also include a fix for this issue. In the meantime the hotfix above is sufficient to prevent it entirely. Revised on 2026-04-04 00:00:00

CVE-2026-35616
FortiClient
Apr 4, 2026
High7.4Fortinet

High [CVE-2026-24018] UNIX symbolic link (Symlink) following vulnerability in Fortinet FortiClientLinux 7.4.0 through 7.4.4, FortiClientLinux 7.2.2…

A UNIX symbolic link (Symlink) following vulnerability in Fortinet FortiClientLinux 7.4.0 through 7.4.4, FortiClientLinux 7.2.2 through 7.2.12 may allow a local and unprivileged user to escalate their privileges to root.

CVE-2026-24018
FortiClient
Mar 10, 2026
High7.1Fortinet

High [CVE-2025-62676] FortiClient: Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet…

An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.4, FortiClientWindows 7.2.0 through 7.2.12, FortiClientWindows 7.0 all versions may allow a local low-privilege attacker to perform an arbitrary file write with elevated permissions via crafted named pipe messages.

CVE-2025-62676
FortiClient
Feb 10, 2026
Critical9.8Fortinet Exploited CISA KEV

Critical [CVE-2026-21643] improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS…

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.

CVE-2026-21643
FortiClient
Feb 6, 2026
High7.2Fortinet

High [CVE-2025-59922] FortiClient: improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerability in…

An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerability in Fortinet FortiClientEMS 7.4.3 through 7.4.4, FortiClientEMS 7.4.0 through 7.4.1, FortiClientEMS 7.2.0 through 7.2.10, FortiClientEMS 7.0 all versions may allow an authenticated attacker with at least read-only admin permission to execute unauthorized SQL code or commands via crafted HTTP or HTTPs requests.

CVE-2025-59922
FortiClient
Jan 13, 2026

← All Fortinet advisories