All 13 CVE vulnerabilities found in FortiMail, with AI-generated Chinese analysis, references, and POCs.
This page aggregates Common Weakness Enumeration (CWE) vulnerabilities associated with Fortinet’s FortiMail email security appliance. It serves as a centralized resource for security professionals and administrators to monitor known security flaws specific to this product line. The collection includes data on various vulnerability types, such as buffer overflows, injection flaws, and improper access controls, spanning from early releases through recent updates. By consolidating this information, the page enables users to track Fortinet’s security advisories over time, understand the prevalence and impact of specific weakness classes within FortiMail, and review the historical context of disclosed security issues. This structured approach facilitates better risk assessment and prioritization of patches, allowing teams to identify patterns in defect discovery and remediation efforts. The data is sourced from official vendor announcements and recognized security databases, ensuring accuracy and relevance. Whether investigating a specific incident or conducting a broad portfolio review, this page provides a comprehensive overview of the threat landscape for FortiMail. It supports informed decision-making by highlighting critical vulnerabilities that may require immediate attention or long-term architectural changes. The focus remains strictly on factual security data, excluding speculative analysis or promotional content, to maintain utility for technical stakeholders managing mail infrastructure security.
Vendor: Fortinet
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-53681 | Fortinet FortiMail SQL注入漏洞 CWE-89 | 6.3 | High | 2026-05-12 |
| CVE-2025-54972 | Fortinet FortiMail 注入漏洞 CWE-93 | 3.9 | Medium | 2025-11-18 |
| CVE-2021-26091 | Fortinet FortiMail 安全特征问题特征问题漏洞 CWE-338 | 6.9 | High | 2025-03-24 |
| CVE-2023-47539 | Fortinet FortiMail 安全漏洞 CWE-284 | 9.0 | Critical | 2025-03-18 |
| CVE-2024-46663 | Fortinet FortiMail 安全漏洞 CWE-121 | 6.5 | Medium | 2025-03-11 |
| CVE-2024-56497 | Fortinet FortiMail和FortiRecorder 操作系统命令注入漏洞 CWE-78 | 6.5 | Medium | 2025-01-14 |
| CVE-2023-36633 | Fortinet FortiMail webmail 安全漏洞 CWE-285 | 5.3 | Medium | 2023-11-14 |
| CVE-2023-45582 | Fortinet FortiMail 安全漏洞 CWE-307 | 5.3 | Medium | 2023-11-14 |
| CVE-2023-36637 | Fortinet FortiMail 跨站脚本漏洞 CWE-79 | 3.4 | Low | 2023-10-10 |
| CVE-2023-36556 | Fortinet FortiMail 安全漏洞 CWE-863 | 8.6 | High | 2023-10-10 |
| CVE-2022-29056 | Fortinet FortiMail 安全漏洞 CWE-307 | 3.5 | Low | 2023-03-09 |
| CVE-2020-9294 | Fortinet FortiMail和FortiVoice Entreprise 授权问题漏洞 | 9.8 | - | 2020-04-27 |
| CVE-2017-3125 | Fortinet FortiMail 跨站脚本漏洞 | 6.1 | - | 2017-04-12 |
All 13 known CVE vulnerabilities affecting FortiMail with full Chinese analysis, references, and POCs where available.