Open Redirect on FortiSIEM
AI summary · glm-5.3
Fortinet disclosed an open redirect flaw (CVSS 2.8) in FortiSIEM allowing authenticated attackers to redirect users to arbitrary websites via crafted HTTP requests.
Fortinet advisory FG-IR-26-169 covers an open redirect vulnerability (CWE-601) in FortiSIEM, rated CVSSv3 2.8. An authenticated attacker can cause a redirection to any website via specially crafted HTTP requests. The advisory was revised on 2026-09-08.
- CVSSv3 2.8 open redirect (CWE-601) in FortiSIEM
- Authenticated attacker can redirect victims to arbitrary sites
- Triggered via specially crafted HTTP requests
Full article
CVSSv3 Score: 2.8 An URL redirection to untrusted site ('open redirect') [CWE-601] vulnerability in FortiSIEM may allow an authenticated attacker to cause a redirection to any website via specially crafted HTTP requests Revised on 2026-09-08 00:00:00
This source does not provide full text. Read it at fortiguard.fortinet.com.