Fortinet FortiOS 6.0
Vulnerabilities, fixed releases, vendor recommendation and support status of the 6.0 branch, from official sources.
Patcharo matches 18 vulnerabilities against Fortinet FortiOS 6.0: 5 critical, 4 known exploited (CISA KEV). Newest fixed release stated by the vendor on this branch: none stated. Last source modification: 11 Aug 2026.
Last verified by Patcharo: 30 Sept 2026 at 15:17 UTC
In brief
- Matched CVEs
- 18
- CISA KEV
- 4
- Newest fix stated
- none stated
- Support
- No statement in the catalog
- Recommended maintenance build
- No official recommendation
- Recommended release
- No official recommendation
- CERT-FR
- 5 documents
Support status
From the vendor's published life-cycle policy; support is not a recommendation.
The life-cycle policy Patcharo reads states nothing about this branch.
Vendor recommendation
The vendor's own statement about what to run, with its date and source. Separate from vulnerabilities and from support status: being behind a recommendation is not a vulnerability, and a supported release is not necessarily the recommended one.
Recommended release per model
The vendor states one recommended release per hardware model (3 models); models are grouped by recommended release.
Vendor wording: “Recommended Release Version” · vendor statement dated 1 Jun 2026
- 6.0.18
- FortiGate-98D-POE, FortiGate-240D, FortiGate-280D
Source: Technical Tip: Recommended release for FortiOS (as of June 2026)last verified by Patcharo 30 Sept 2026 at 00:17 UTC
Vulnerabilities affecting 6.0
Each record matched to this branch with the fixed release the source states, newest first.
| CVE | Severity | Fixed in | Published |
|---|---|---|---|
| CVE-2025-53844 A out-of-bounds write vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, For… | High8.8CVSS 3.1, High | after 6.0.18 | |
| CVE-2025-58413 A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.… | High7.5CVSS 3.1, High | after 6.0.18 | |
| CVE-2023-46718 A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.7 and 7.0… | High7.8CVSS 3.1, High | after 6.0.18 | |
| CVE-2024-26009 An authentication bypass using an alternate path or channel [CWE-288] vulnerability in Fortinet FortiOS 6.4.0… | High8.1CVSS 3.1, High | after 6.0.18 | |
| CVE-2023-25610 A buffer underwrite ('buffer underflow') vulnerability in the administrative interface of Fortinet FortiOS ve… | Critical9.8CVSS 3.1, Critical | after 6.0.18 | |
| CVE-2020-12820 Under non-default configuration, a stack-based buffer overflow in FortiOS version 6.0.10 and below, version 5… | High8.8CVSS 3.1, High | after 6.0.10 | |
| CVE-2020-12819 A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate v… | High7.5CVSS 3.1, High | after 6.0.10 | |
| CVE-2024-26011 A missing authentication for critical function in Fortinet FortiManager version 7.4.0 through 7.4.2, 7.2.0 th… | Critical9.8CVSS 3.1, Critical | after 6.0.18 | |
| CVE-2024-26010 A stack-based buffer overflow in Fortinet FortiPAM version 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, F… | High7.5CVSS 3.1, High | after 6.0.18 | |
| CVE-2023-46720 A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.7 and 7.0… | High7.8CVSS 3.1, High | after 6.0.18 | |
| CVE-2024-23110 A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 thr… | High7.8CVSS 3.1, High | after 6.0.18 | |
| CVE-2023-41677 A insufficiently protected credentials in Fortinet FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.1… | High8.8CVSS 3.1, High | after 6.0.18 | |
| CVE-2023-29180 A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 throu… | High7.5CVSS 3.1, High | after 6.0.16 | |
| CVE-2023-29181 A use of externally-controlled format string in Fortinet FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6… | High8.8CVSS 3.1, High | after 6.0.16 | |
| CVE-2024-21762 Fortinet FortiOS Out-of-Bound Write Vulnerability | Critical9.8CVSS 3.1, CriticalKEVRansomware | after 6.0.17 | |
| CVE-2023-27997 Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability | Critical9.8CVSS 3.1, CriticalKEVRansomware | after 6.0.16 | |
| CVE-2022-41328 Fortinet FortiOS Path Traversal Vulnerability | High7.1CVSS 3.1, HighKEV | after 6.0.16 | |
| CVE-2022-42475 Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability | Critical9.8CVSS 3.1, CriticalKEVRansomware | after 6.0.15 |
CERT-FR advisories and alerts
Documents of the French national CERT referencing these CVEs, newest first.
- Advisory (AVI)CERTFR-2026-AVI-0575Multiples vulnérabilités dans les produits FortinetPublished 13 May 2026
- Advisory (AVI)CERTFR-2025-AVI-1023Multiples vulnérabilités dans les produits FortinetPublished 19 Nov 2025
- Advisory (AVI)CERTFR-2025-AVI-0871Multiples vulnérabilités dans les produits FortinetPublished 15 Oct 2025
- Advisory (AVI)CERTFR-2025-AVI-0679Multiples vulnérabilités dans les produits FortinetPublished 13 Aug 2025
- Advisory (AVI)CERTFR-2024-AVI-0979Multiples vulnérabilités dans les produits FortinetPublished 13 Nov 2024
How Patcharo reads this
Affected and fixed releases come from the vendor's structured statements, matched by exact version and patch level. The recommendation is the vendor's own statement; the support status comes from its life-cycle policy. Unknown never becomes Not affected.