Cyber Resilience
← All news
Confirmed

Fortinet security advisory (AV26-023) - Update 1

Our takeFortinet's AV26-023 advisory covers critical flaws in FortiOS 7.6.0-7.6.3, 7.4, FortiFone 7.0.0-7.0.1 and 3.0.13-3.0.23. Update affected systems now.
Sources (1)
What this means for you — Security leader:Apply Fortinet's AV26-023 updates to any FortiFone 7.0/3.0 or FortiOS 7.6/7.4 instances you manage. An authoritative Canadian government advisory states these versions are under active exploitation.
What this means for you — Lean IT orgs:If you run FortiFone or these exact FortiOS versions, install the updates from Fortinet now. Most teams using cloud-managed Fortinet services can ask your provider whether this affects you.
What this means for you — MSP:Patch FortiFone 7.0.0–7.0.1, 3.0.13–3.0.23, FortiOS 7.6.0–7.6.3 and 7.4 across client estates per Fortinet AV26-023. Authoritative advisory confirms active exploitation in these releases.
What this means for you — Researcher:Fortinet AV26-023 covers critical updates for FortiFone 7.0/3.0 and FortiOS 7.6/7.4. CCCS states active exploitation.