All 13 CVE vulnerabilities found in FortiSOAR, with AI-generated Chinese analysis, references, and POCs.
This page provides a comprehensive aggregation of security vulnerabilities associated with FortiSOAR, a network security automation platform developed by Fortinet. The content focuses specifically on software flaws and configuration weaknesses that may expose the application to exploitation or denial-of-service attacks. The vulnerability data collected here encompasses a broad spectrum of issues, including cross-site scripting, injection flaws, insecure default configurations, and privilege escalation bugs. This repository covers historical reports and recent advisories spanning the last several years, ensuring that both legacy and current release versions are accounted for. The time range allows analysts to observe trends in security patching and the evolving threat landscape specific to Fortinet’s orchestration tools. By utilizing this resource, users can track individual vendor advisories from Fortinet to monitor the status of known issues and verify whether specific versions have been remediated. It also enables security professionals to understand the characteristics and impact of distinct weakness classes within the context of SOAR platforms. Furthermore, the page serves as a lookup tool for examining the complete vulnerability history of FortiSOAR, helping teams assess risk exposure and prioritize remediation efforts based on the severity and exploitability of disclosed defects. This structured approach supports effective incident response and proactive security hygiene for organizations deploying Fortinet’s automation solutions in their infrastructure.
Vendor: Fortinet
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-48892 | Fortinet FortiSOAR 安全漏洞 CWE-23 | 6.4 | Medium | 2025-08-12 |
| CVE-2025-32932 | Fortinet FortiSOAR 跨站脚本漏洞 CWE-79 | 6.2 | Medium | 2025-08-12 |
| CVE-2024-21760 | Fortinet FortiSOAR 代码注入漏洞 CWE-94 | 7.7 | High | 2025-03-18 |
| CVE-2024-47572 | Fortinet FortiSOAR 安全漏洞 CWE-1236 | 8.3 | Critical | 2025-01-14 |
| CVE-2024-48890 | Fortinet FortiSOAR 操作系统命令注入漏洞 CWE-78 | 6.3 | Medium | 2025-01-14 |
| CVE-2024-48893 | Fortinet FortiSOAR 跨站脚本漏洞 CWE-79 | 6.4 | Medium | 2025-01-14 |
| CVE-2024-45327 | Fortinet FortiSOAR 安全漏洞 CWE-307 | 7.1 | High | 2024-09-11 |
| CVE-2023-26211 | Fortinet FortiSOAR 跨站脚本漏洞 CWE-79 | 6.4 | Medium | 2024-08-13 |
| CVE-2023-23775 | Fortinet FortiSOAR SQL注入漏洞 CWE-89 | 5.9 | Medium | 2024-06-11 |
| CVE-2024-31493 | Fortinet FortiSOAR 授权问题漏洞 CWE-212 | 6.0 | Medium | 2024-06-03 |
| CVE-2023-27995 | Fortinet FortiSOAR 安全漏洞 CWE-1336 | 7.2 | High | 2023-04-11 |
| CVE-2023-25605 | Fortinet FortiSOAR 安全漏洞 CWE-284 | 7.5 | High | 2023-03-07 |
| CVE-2022-38379 | Fortinet FortiSOAR 跨站脚本漏洞 CWE-79 | 3.4 | Low | 2022-12-06 |
All 13 known CVE vulnerabilities affecting FortiSOAR with full Chinese analysis, references, and POCs where available.