CVE-2026-22153Disclosure(fortinet / fortios)

MEDIUMCVSS 8.1 · HIGH

Exploitation observed; activity peaked at 5 mentions and remains active

Immediate actions

  • Patch fortinet fortios systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way.

4.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-305

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fortios

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 19 mentions across 9 observed days
  • Momentum state: declining

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 8 signals
  • Technical details provided in 16 signals
  • Disclosure: 10 classified signals
  • General: 1 classified signal
  • Peaked 7d ago at 5 mentions (2026-02-11); latest day: 1
  • 19 total mentions across 9 days

Affected systems

Vendors
Products
fortios

Deep dive

Activity timeline19 mentions / 9d
01345Mentions · 2026-02-10: 2Mentions · 2026-02-11: 5Mentions · 2026-02-12: 3Mentions · 2026-02-13: 2Mentions · 2026-02-15: 1Mentions · 2026-02-16: 3Mentions · 2026-02-19: 1Mentions · 2026-03-15: 1Mentions · 2026-07-07: 1Active Exploitation · 2026-02-12: 1Patch / Workaround · 2026-02-10: 1Patch / Workaround · 2026-02-11: 3Patch / Workaround · 2026-02-12: 2Patch / Workaround · 2026-03-15: 1Patch / Workaround · 2026-07-07: 1Technical Details · 2026-02-10: 2Technical Details · 2026-02-11: 5Technical Details · 2026-02-12: 2Technical Details · 2026-02-13: 1Technical Details · 2026-02-16: 3Technical Details · 2026-02-19: 1Technical Details · 2026-03-15: 1Technical Details · 2026-07-07: 102-1002-1102-1202-1302-1502-1602-1903-1507-07
Signal classification3 categories
Disclosure
1052.6%
Patch
842.1%
General
15.3%
Referenced assets13 URLs
Classification over time
DateTotalLabels
2026-02-102
Disclosure1Patch1
2026-02-115
Disclosure2Patch3
2026-02-123
Disclosure1Patch2
2026-02-132
Disclosure2
2026-02-151
General1
2026-02-163
Disclosure3
2026-02-191
Disclosure1
2026-03-151
Patch1
2026-07-071
Patch1
Full discourse19 posts
  • Cyber Security News@The_Cyber_News
    Disclosure

    ⚠️ FortiOS Authentication Bypass Vulnerability Lets Attackers Bypass LDAP Authentication Source: https://cybersecuritynews.com/fortios-ldap-authentication-bypass-vulnerability/ Fortinet has disclosed a high-severity authentication bypass vulnerability in FortiOS, tracked as CVE-2026-22153 (FG-IR-25-1052), that could allow unauthenticated attackers to sidestep LDAP authentication for Agentless VPN or Fortinet Single Sign-On (FSSO) policies. The flaw resides in the fnbamd daemon and requires specific LDAP server configurations enabling unauthenticated binds. The issue stems from improper handling of LDAP authentication requests. An attacker could exploit this under certain setups, such as those permitting anonymous binds, to gain unauthorized access without valid credentials. #cybersecuritynews #vulnerability

    Post summary

    Fortinet disclosed a high‑severity FortiOS authentication bypass (CVE‑2026‑22153) that lets attackers sidestep LDAP authentication under specific server configurations. No patches, exploits, or active exploitation reports are mentioned.

    67672418933.2K
    48.0K followersView on X
  • سايبركاست@cyberscastx
    Patch

    أصدرت @Fortinet تنبيهات لمعالجة ثغرات في منتجاتها مع وجود ثغرتين عاليتي الخطورة تتطلبان تحديثاً عاجلاً، هما: - الثغرة CVE-2025-52436 بتقييم CVSS 7.9. - الثغرة CVE-2026-22153 بتقييم CVSS 7.5. https://t.co/5LqpQ4toOA

    Post summary

    Fortinet issued alerts for two high‑severity CVEs, CVE‑2025‑52436 (CVSS 7.9) and CVE‑2026‑22153 (CVSS 7.5), urging users to apply urgent updates.

    00062854
    6.4K followersView on X
  • Machina Record@MachinaRecord
    Patch

    🔨マイクロソフト、攻撃で悪用されているゼロデイ6件などを修正(CVE-2026-21533、CVE-2026-21525ほか) 🩹Fortinet、深刻度の高いFortiSandboxとFortiOSの脆弱性にパッチ(CVE-2025-52436、CVE-2026-22153) 〜サイバーアラート 2月11~12日〜 https://codebook.machinarecord.com/threatreport/silobreaker-cyber-alert/43837/

    Post summary

    Microsoft and Fortinet released patches for several zero‑day and high‑severity vulnerabilities that were actively exploited, as highlighted in the February cyber alert.

    11010208
    1.2K followersView on X
  • iototsecnews@iototsecnews
    Disclosure

    Fortinet FortiOS の認証バイパス脆弱性 CVE-2026-22153 が FIX:LDAP 認証回避が可能 https://iototsecnews.jp/2026/02/10/fortios-authentication-bypass-vulnerability-lets-attackers-bypass-ldap-authentication/ Fortinet の FortiOS において、認証を飛び越えて内部ネットワークへ侵入される恐れのある深刻な脆弱性が発見されました。この問題の原因は、外部の認証サーバ (LDAP) と連携してユーザー確認を行う fnbamd というプログラム処理に不備があることです。特定の条件において、攻撃者がパスワードを入力せずにログインを試みた際に、システムが正当なアクセスと誤認して通してしまう設計上のミスが存在しました。この脆弱性 CVE-2026-22153 (CVSS:7.5) は、特に匿名での接続を許可する LDAP サーバと連携している場合にリスクが高まります。これが悪用されると、VPN を通じた社内ネットワークへの侵入を許し、データ盗取などの攻撃の踏み台にされる危険性があります。ご利用のチームは、ご注意ください。 #CVE202622153 #Fortinet #FortiOS #Vulnerability

    Post summary

    A new authentication bypass vulnerability (CVE‑2026‑22153) in Fortinet FortiOS allows attackers to bypass LDAP authentication without a password, potentially enabling network intrusion. No evidence of active exploitation or a fix is provided in the text.

    01000130
    484 followersView on X
  • セキュリティ対策Lab@securityLab_jp
    Disclosure

    FortiOSのAgentless VPN/FSSOでLDAP認証を回避できる脆弱性(CVE-2026-22153) https://rocket-boys.co.jp/security-measures-lab/fortios-agentless-vpn-fsso-ldap-auth-bypass-vulnerability-cve-2026-22153/ #セキュリティ対策Lab #セキュリティ #Security #CybersecurityNews

    Post summary

    The text announces CVE-2026-22153, a FortiOS vulnerability that allows bypassing LDAP authentication in Agentless VPN/FSSO, with basic technical details provided but no exploit or patch information.

    10000114
    312 followersView on X
  • Autumn Good@autumn_good_35
    Disclosure

    『allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, under specific LDAP server configuration.』 CVE-2026-22153 FortiOS LDAP authentication bypass in Agentless VPN and FSSO https://www.fortiguard.com/psirt/FG-IR-25-1052

    Post summary

    The text discloses a FortiOS LDAP authentication bypass (CVE-2026-22153) with a concise technical description but provides no PoC, exploit code, patch, or evidence of active exploitation.

    00010362
    6.7K followersView on X
  • 脆弱なエンジニア@zeijak_engineer
    Patch

    ”FortinetのUTM機器などに搭載されている「FortiOS」の「SSL-VPN」コンポーネントに脆弱性「CVE-2026-22153」が判明した問題で” 【セキュリティ ニュース】「FortiOS」のLDAP認証バイパス脆弱性、仮想パッチが公開(1ページ目 / 全1ページ):Security NEXT https://www.security-next.com/186841

    Post summary

    The article announces that FortiOS SSL‑VPN has an LDAP authentication bypass vulnerability (CVE‑2026‑22153) and that a virtual patch has been made available.

    0000074
    236 followersView on X
  • FirstPassLab@FirstPassLab
    Patch

    FortiOS 7.6.x auth bypass (CVE-2026-22153) targets LDAP-backed Agentless VPN and FSSO policies. Before you patch to 7.6.5, verify your exposure: # Check if LDAP auth is configured show user ldap # Check FSSO status show user fsso diagnose debug application fssod -1 # Look for unauthorized VPN sessions RIGHT NOW diagnose vpn tunnel list get vpn ssl monitor # Review admin login history for anomalies diagnose sys admin list The attack doesn't need valid credentials — CWE-288 means the auth flow itself is bypassed via an alternate path. If your FortiGate uses LDAP for VPN or SSO, an unauthenticated attacker can access your network. Patch order: FortiOS 7.6.x first, then FortiSwitchManager (CVE-2025-25249 heap overflow covers 7.0 through 7.6), then FortiClientLinux local privesc. #CCIE #CiscoSecurity #Fortinet #FortiOS #NetworkSecurity

    Post summary

    The post alerts users to FortiOS 7.6.x auth bypass via LDAP and advises patching, without providing exploit code or evidence of active exploitation.

    0000055
    11 followersView on X
  • サイバーセキュリティニュース-JP@cybersecnews_jp
    Disclosure

    FortiOSのAgentless VPN/FSSOでLDAP認証を回避できる脆弱性(CVE-2026-22153) https://rocket-boys.co.jp/security-measures-lab/fortios-agentless-vpn-fsso-ldap-auth-bypass-vulnerability-cve-2026-22153/

    Post summary

    The article announces a FortiOS Agentless VPN/FSSO LDAP authentication bypass vulnerability (CVE‑2026‑22153).

    0000061
    44 followersView on X
  • Soo Yoon | FailSafe Ecosystem@sooyoon_eth
    Disclosure

    @securityLab_jp CVE-2026-22153 in fortiOS is nasty - LDAP auth bypass in agentless VPN. classic access control miss. hope people aren't running default configs

    Post summary

    CVE‑2026‑22153 exposes an LDAP authentication bypass in FortiOS agentless VPN, highlighting an access control flaw; no patch, PoC, or exploitation activity is mentioned.

    0000050
    23.7K followersView on X
  • sajberinfo.com@SajberInfoBlog
    General

    FortiOS: Ranjivost zaobilaženja provjere identiteta (CVE-2026-22153) https://sajberinfo.com/2026/02/15/fortios-ranjivost-zaobilazenja/ #bezbjednost #cybernapad #cybersecurity #firewall #fortigate #fortios #fssopolitike #infosec #ldapserver #networksecurity #provjeraidentiteta #ranjivost #sigurnostmreze #vpnbezagenta

    Post summary

    The post merely announces the existence of a FortiOS CVE with no additional exploitation, mitigation, or technical detail.

    0000053
    10 followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos Fortinet ❗ CVE-2026-22153 ❗ CVE-2025-52436 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-fortinet-7/ https://t.co/AGcsLdJu8O

    Post summary

    The post announces two Fortinet CVEs and directs readers to external links for further information, with no additional technical or exploit details.

    00000143
    6.6K followersView on X
  • Grok@grok
    Patch

    La vulnerabilidad CVE-2026-22153 en FortiOS permite a atacantes sin autenticar bypassar la autenticación LDAP en políticas de Agentless VPN o FSSO, si el servidor LDAP permite binds anónimos. Afecta versiones 7.6.0 a 7.6.4, debido a un manejo incorrecto en el daemon fnbamd. Remedio: Actualiza a FortiOS 7.6.5 o superior vía la herramienta de upgrade de Fortinet. Workaround: Deshabilita binds no autenticados en el servidor LDAP. Para Active Directory (Server 2019+), usa este PowerShell: $configDN = (Get-ADRootDSE).configurationNamingContext $dirSvcDN = "CN=Directory Service,CN=Windows NT,CN=Services,$configDN" Set-ADObject -Identity $dirSvcDN -Add {'msDS-Other-Settings'='DenyUnauthenticatedBind=1'}

    Post summary

    The text discloses CVE-2026-22153 as an LDAP authentication bypass in FortiOS 7.6.0‑7.6.4, provides a patch recommendation and a workaround using PowerShell.

    0000061
    8.1M followersView on X
  • Cyberwatcher_@cyberwatcher_
    Disclosure

    ⚠️ Nouvelle vulnérabilité Fortinet (CVE-2026-22153) : contournement de l'authentification LDAP. Risque potentiel pour VPN et FSSO. #Cybersecurity #Vulnerability #InfoSec https://cyberveille.esante.gouv.fr/alertes/fortinet-cve-2026-22153-2026-02-11 https://cyberveille.esante.gouv.fr/alertes/fortinet-cve-2026-22153-2026-02-11

    Post summary

    A new Fortinet vulnerability (CVE-2026-22153) allowing LDAP authentication bypass has been disclosed, potentially impacting VPN and FSSO services.

    0000050
    10 followersView on X
  • The Daily Tech Feed@dailytechonx
    Patch

    Fortinet's FortiOS faces a critical LDAP authentication bypass vulnerability (CVE-2026-22153). Immediate upgrade to version 7.6.5+ recommended. Link: https://thedailytechfeed.com/critical-fortios-vulnerability-cve-2026-22153-allows-attackers-to-bypass-ldap-authentication-urgent-update-needed/ #Security #Fortinet #Risk #Update #Patch #Threat #Breach #Exploit #Network #Software #Firewall #Protection #Alert #Compliance #Attack #System #Bug #Mitigation #Safety #Technology

    Post summary

    Fortinet FortiOS has a critical LDAP authentication bypass (CVE-2026-22153); upgrading to version 7.6.5+ is recommended to mitigate the risk.

    0000076
    234 followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 Fortinet Patches High-Severity Bugs Enabling Unauth Command Execution + LDAP Auth Bypass Fortinet released fixes for multiple product flaws, including a FortiSandbox XSS (CVE-2025-52436) that can lead to unauthenticated command execution and a FortiOS LDAP authentication bypass (CVE-2026-22153) under certain Agentless VPN/FSSO configurations. Treat this as urgent perimeter hygiene for Fortinet-heavy estates because the affected components sit on high-trust boundary paths (sandboxing, VPN/SSO auth). 🎯 Target: Global/Enterprise (Fortinet FortiOS/FortiGate/FortiSandbox users) #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://www.securityweek.com/fortinet-patches-high-severity-vulnerabilities/

    Post summary

    Fortinet announced patches for CVE‑2025‑52436 and CVE‑2026‑22153, providing technical details but no evidence of active exploitation or PoC.

    0000051
    191 followersView on X
  • TeknoKure@TeknoKureGroup
    Disclosure

    Fortinet FortiOS'ta LDAP Kimlik Doğrulama Atlama Açığı: CVE-2026-22153 ve FG-IR-25-1052 Analiz ve (2026 Güncel Tehdit) güncelleme bilgisi. https://www.teknokure.com/yazi/fortinet-fortios-ta-ldap-kimlik-dogrulama-atlama-acigi?utm_source=x&utm_medium=social&utm_campaign=organic #CyberSecurity #vulnerability #eipsteinfiles #SecurityAlert

    Post summary

    A brief alert announces a newly disclosed LDAP authentication bypass vulnerability (CVE‑2026‑22153) affecting Fortinet FortiOS, linking to an analysis article.

    0000083
    2 followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 FortiOS LDAP Auth Bypass Flaw Lets Attackers Slip Past Agentless VPN/FSSO (CVE-2026-22153) Fortinet disclosed CVE-2026-22153 (FG-IR-25-1052), a high-severity auth bypass in FortiOS 7.6.0–7.6.4 where certain LDAP configurations that allow unauthenticated binds can let attackers sidestep LDAP authentication for Agentless VPN or FSSO policies. Upgrade to FortiOS 7.6.5+ and disable anonymous/unauthenticated LDAP binds to prevent unauthorized network access via SSL-VPN policy controls. 🎯 Target: Global/Enterprise (FortiOS SSL-VPN, Agentless VPN, FSSO) #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://cybersecuritynews.com/fortios-ldap-authentication-bypass-vulnerability/

    Post summary

    Fortinet disclosed a high‑severity LDAP authentication bypass (CVE‑2026‑22153) in FortiOS 7.6.0–7.6.4 and recommends upgrading to 7.6.5+ and disabling anonymous LDAP binds to mitigate the flaw.

    0000077
    191 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-22153 - High An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication ... https://www.thehackerwire.com/vulnerability/CVE-2026-22153/ https://t.co/aphXqAl0L2

    Post summary

    The tweet announces the discovery of CVE-2026‑22153, detailing an authentication bypass vulnerability in Fortinet FortiOS 7.6.x, with high severity and affected versions, but provides no PoC, exploit, or patch information.

    0000089
    112 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSfortinetfortios---

Explore more