Story perspectives
Fortinet Patches Critical Vulnerabilities in FortiSIEM, FortiFone
1/14/2026
44 3
1 of 1
Story summary
- Fortinet has addressed critical vulnerabilities in FortiSIEM and FortiFone that could let unauthenticated attackers execute code or access data.
- FortiSIEM vulnerability CVE-2025-64155 has a CVSS of 9.4 and affects Super and Worker nodes.
- Users must upgrade to specific FortiSIEM versions to mitigate the risk.
- FortiFone vulnerability CVE-2025-47855 allows attackers to obtain device configurations through crafted HTTP requests.
