Organizations running Fortinet FortiWeb, the company’s web application firewall, face an immediate threat: a single crafted HTTP or HTTPS request can give an unauthenticated attacker the ability to ...
Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS) to deliver an undocumented credential stealer called EKZ. The attacker ...