Fortinet FortiSandbox OS Command Injection Vulnerability

Fortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.

Published 15 Jul 2026Updated 15 Jul 20262 sources
CVSS 0.0 △ CISA KEV

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.