security1 publisher
CVE-2026-24858 let attackers log into Fortinet devices registered to other customers
Fortinet switched off FortiCloud SSO worldwide on January 26 and turned it back on the next day with server-side changes. Devices already fully patched against the two 2025 SAML bypasses were compromised anyway.
Publishers:cisa.gov
Reality
- Evidence70
- Adoption66
- Hype gap−8
- Incentives40
- Confidence65