CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2026-39813: FortiSandbox JRPC API Path Traversal Vulnerability

June 25, 2026

A path traversal vulnerability in FortiSandbox JRPC API that could allow an unauthenticated attacker to bypass authentication via specially crafted HTTP requests. CVSS score 9.1. Patched by Fortinet in April 2026.