CISA has issued an alert about a critical authentication bypass vulnerability (CVE-2025-24472) in Fortinet’s FortiOS and FortiProxy systems, rated 8.1 in severity. Active exploitation allows remote attackers to gain super-admin privileges via crafted requests. Affected versions include FortiOS 7.0.0-7.0.16 and FortiProxy 7.0.0-7.2.12. Mitigations include applying patches or disabling interfaces.

VPN Vulnerabilities Emerges As The Key Tool for Threat Actors to Attack Organizations
Cybercriminals increasingly target VPN infrastructure, exploiting long-standing vulnerabilities like CVE-2018-13379 and CVE-2022-40684. These flaws have a 97% risk score for exploitation and are linked to