Fortinet
73records21productslast change2026-08-14RSSas of the 2026-09-07 snapshot
Rows per week, last 26 weeks
Rows, not records: one record that changed for four products is four rows and one record.
Every change, newest first
lines 21 to 40 of 69 · standing on 34 of 133 rows| Changed on, The day the commit that carried this change was read. Where the same change spans several days, the first and the last, never a midpoint. Not dated means no commit could be located for the row. | Change | CVE | Product | What the record says now |
|---|---|---|---|---|
| 2026-05-12 to2026-06-23 | Affected range extended | Fortios | stated at publication 7.2.11, now states 7.2.13 | |
| 2026-06-23 | Affected range extended | CVE-2025-25250 | Fortios | stated at publication 7.2.11, now states 7.2.13 |
| 2026-05-12 | Affected range extended | CVE-2025-62631 | Fortios | stated at publication 7.2.11, now states 7.2.13 |
| 2026-01-14 to2026-06-12 | Affected range extended | Fortios | stated at publication 6.2.16, now states 6.2.17 | |
| 2026-06-12 | Affected range extended | CVE-2023-36640 | Fortios | stated at publication 6.2.16, now states 6.2.17 |
| 2026-06-12 | Affected range extended | CVE-2023-45583 | Fortios | stated at publication 6.2.16, now states 6.2.17 |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2025-12-19 to2026-06-12 | Affected range extended | Fortios | stated at publication 6.4.15, now states 6.4.16 | |
| 2026-06-12 | Affected range extended | CVE-2023-45583 | Fortios | stated at publication 6.4.15, now states 6.4.16 |
| 2026-01-14 | Affected range extended | CVE-2023-40721 | Fortios | stated at publication 6.4.15, now states 6.4.16 |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2026-01-28 to2026-06-09 | Product added | CVE-2026-24858 | 3 products | not named as affected at publication, now names 3 products |
| 2026-06-09 | Product added | CVE-2026-24858 | fortinac-f | not named as affected at publication, now names fortinac-f |
| 2026-01-28 | Product added | CVE-2026-24858 | Fortiproxy | not named as affected at publication, now names fortiproxy |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2026-06-09 | Affected range extended | CVE-2025-31514 | Fortiproxy | stated at publication 7.4.11, now states 7.4.13 |
| 2026-05-26 | Affected range extended | CVE-2025-68648 | Fortianalyzer Cloud | stated at publication 7.0.15, now states 7.0.16 |
| 2026-05-12 | Product added | CVE-2026-25836 | Fortisandbox Paas | not named as affected at publication, now names fortisandbox paas |
| 2026-04-13 | Added to CISA KEV | CVE-2026-21643 | FortiClient EMS | listed by CISA 2026-04-13federal fix due 2026-04-16 |
| 2026-04-06 | Added to CISA KEV | CVE-2026-35616 | FortiClient EMS | listed by CISA 2026-04-06federal fix due 2026-04-09 |
| 2026-02-04 | Affected range extended | CVE-2024-45326 | Fortideceptor | stated at publication 5.2.1, now states 5.2.2 |
| 2026-02-04 | Affected range extended | CVE-2024-45326 | Fortideceptor | stated at publication 5.3.3, now states 5.3.4 |
| 2026-01-27 | Added to CISA KEV | CVE-2026-24858 | Multiple Products | listed by CISA 2026-01-27federal fix due 2026-01-30 |
| 2026-01-14 | Affected range extended | Fortisandbox | stated at publication 4.0.5, now states 4.0.6 | |
| 2026-01-14 | Affected range extended | CVE-2023-47541 | Fortisandbox | stated at publication 4.0.5, now states 4.0.6 |
| 2026-01-14 | Affected range extended | CVE-2024-31490 | Fortisandbox | stated at publication 4.0.5, now states 4.0.6 |
| 2 more rows in this change are not listed here. Open all 4 rows → | ||||
| 2026-01-14 | Product added | CVE-2024-54026 | Fortisandbox Cloud | not named as affected at publication, now names fortisandbox cloud |
| 2026-01-14 | Affected range extended | Fortisandbox | stated at publication 4.0.4, now states 4.0.6 | |
| 2026-01-14 | Affected range extended | CVE-2023-41836 | Fortisandbox | stated at publication 4.0.4, now states 4.0.6 |
| 2026-01-14 | Affected range extended | CVE-2023-41844 | Fortisandbox | stated at publication 4.0.4, now states 4.0.6 |
| 1 more row in this change is not listed here. Open all 3 rows → | ||||
| 2026-01-14 | Affected range extended | CVE-2023-26210 | Fortiadc | stated at publication 7.0.5, now states 7.0.6 |
| 2026-01-14 | Affected range extended | CVE-2023-41842 | 2 products | stated at publication 6.4.14, now states 6.4.15 |
| 2026-01-14 | Affected range extended | CVE-2023-41842 | Fortianalyzer | stated at publication 6.4.14, now states 6.4.15 |
| 2026-01-14 | Affected range extended | CVE-2023-41842 | Fortimanager | stated at publication 6.4.14, now states 6.4.15 |
| 2026-01-14 | Affected range extended | CVE-2023-29175 | Fortios | stated at publication 6.2.15, now states 6.2.17 |
| 2026-01-14 | Affected range extended | CVE-2023-29175 | Fortios | stated at publication 6.4.13, now states 6.4.16 |
| 2024-10-18 to2026-01-14 | Affected range extended | Fortios | stated at publication 6.0.17, now states 6.0.18 | |
| 2026-01-14 | Affected range extended | CVE-2023-29175 | Fortios | stated at publication 6.0.17, now states 6.0.18 |
| 2024-10-18 | Affected range extended | CVE-2023-28002 | Fortios | stated at publication 6.0.17, now states 6.0.18 |
A line that names a count is the same change on that many records or products, shown once; it opens to every member. A closed line is not reached by find-in-page; the flat view (Every row, flat →) is. Only counted changes are here: a change a kind's false-positive filter refused, such as a product line being renumbered, is in no figure on this page.
Data sources and quality
One vendor, every counted kind of change: the rows where a CVE record or a CISA KEV entry naming Fortinet changed after publication. The vendor name is the record's own text, compared without regard to case, so one organisation can appear under more than one spelling and this page holds the spellings that share its web address. Rows and records are different numbers and are never added together.
Not counted: a product line being renumbered, a boundary already named in the record's own description, and the other refusal classes are filtered as false positives and are in no figure here, so this page is what survived those filters rather than everything the catalog changed for this vendor.
Not checked: a record published before 2023 cannot have its state at publication recovered and was never compared, and a CISA KEV listing added before the first mirrored commit was never seen changing, so an absence from this page is not evidence that a record held.
How every one of these figures is measured, in full →
Shipped snapshot computed 2026-09-07 from catalog commit ed5547afbae2. Real findings, not live ones: records amended since are not reflected. A later fix version is evidence that the record changed, not evidence that the first fix was incomplete.