CVE-2026-22828Disclosure(fortinet / fortianalyzer_cloud)

LOWCVSS 8.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch fortinet fortianalyzer_cloud systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.6.2 through 7.6.4 may allow a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests. Successful exploitation would require a large amount of effort in preparation because of ASLR and network segmentation

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-122

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fortianalyzer_cloud
  • fortimanager_cloud

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-04-14); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
fortianalyzer_cloudfortimanager_cloud

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-04-14: 3Mentions · 2026-04-19: 1Patch / Workaround · 2026-04-14: 2Technical Details · 2026-04-14: 3Technical Details · 2026-04-19: 104-1404-19
Signal classification1 categories
Disclosure
4100.0%
Referenced assets10 URLs
Classification over time
DateTotalLabels
2026-04-143
Disclosure3
2026-04-191
Disclosure1
Full discourse4 posts
  • にゃん☆たく/takumi.a@taku888infinity
    Disclosure

    ぱっちちゅーずでー ◆ Microsoft 2026 年 4 月のセキュリティ更新プログラム (月例) https://www.microsoft.com/en-us/msrc/blog/2026/04/202604-security-update CVE-2026-33825 Microsoft Defender の特権の昇格の脆弱性 CVE-2026-32201 Microsoft SharePoint Server のなりすましの脆弱性 ◆Fortinet https://fortiguard.fortinet.com/psirt ・FG-IR-26-100 / CVE-2026-39808 FortiSandbox 4.4系のAPIにある OSコマンドインジェクション。細工したリクエストを受けると、認証なしで任意コードや任意コマンドを実行される恐れがあります。外部公開や到達可能性がある環境では、優先度高めでの確認が必要です。 ・FG-IR-26-112 / CVE-2026-39813 FortiSandbox のJRPC APIにある パストラバーサル起因の認証回避・権限昇格。特別に細工したHTTPリクエストで未認証のまま認証をバイパスし、権限を引き上げられる可能性があるため、管理API露出環境では特に注意が必要です。 ・FG-IR-26-121 / CVE-2026-22828 FortiAnalyzer Cloud / FortiManager Cloud の oftpd にある ヒープベースのバッファオーバーフロー。細工したリクエストにより、リモートの未認証攻撃者が任意コードやコマンド実行に至る可能性がありますが、悪用にはASLRや分離構成を踏まえた準備が必要です。 ◆Ivanti https://www.ivanti.com/blog/april-2026-security-update https://hub.ivanti.com/s/article/Security-Advisory-Ivanti-Neurons-for-ITSM-CVE-2026-4913-CVE-2026-4… ◆Adobe(Criticalで任意のコード実行のみ抽出) https://helpx.adobe.com/security.html ・Adobe ColdFusion(APSB26-38) CVE-2026-27304, CVE-2026-27306 入力検証不備により、任意のコード実行につながる脆弱性 ・Adobe Connect(APSB26-37) CVE: CVE-2026-27302, CVE-2026-27303, CVE-2026-27243, CVE-2026-27245, CVE-2026-27246, CVE-2026-34615 デシリアライズ不備や XSS を起点に、任意のコード実行が可能となる脆弱性 ・Adobe FrameMaker(APSB26-36) CVE: CVE-2026-27290, CVE-2026-27292, CVE-2026-27293, CVE-2026-27294, CVE-2026-27295, CVE-2026-27296, CVE-2026-27297, CVE-2026-27298 任意のコード実行につながる脆弱性群 ・Adobe Bridge(APSB26-39) CVE: CVE-2026-34630, CVE-2026-27310, CVE-2026-27311, CVE-2026-27312, CVE-2026-27313 複数のヒープベース・バッファオーバーフローにより、任意のコード実行が可能になる脆弱性 ・Adobe Photoshop(APSB26-40) CVE: CVE-2026-27289 境界外読み取りにより、任意のコード実行につながる脆弱性 ・Adobe Illustrator(APSB26-42) CVE: CVE-2026-34618 境界外書き込みにより、任意のコード実行につながる脆弱性 ◆SAP SAP Security Patch Day - April 2026 https://support.sap.com/en/my-support/knowledge-base/security-notes-news/april-2026.html CVE-2026-27681 https://www.cve.org/CVERecord?id=CVE-2026-27681 『(直訳)SAP Business Planning and ConsolidationおよびSAP Business Warehouseにおける認証チェックの不備により、認証済みのユーザーが細工されたSQL文を実行してデータベースデータを読み取り、変更、削除できる脆弱性が存在します。これは、システムの機密性、完全性、可用性に重大な影響を及ぼします。』

    Post summary

    The document lists multiple CVEs released in April 2026 across Microsoft, Fortinet, Ivanti, Adobe, and SAP, providing technical details and indicating vendor patch updates, but no PoCs, exploitation evidence, or debunking claims.

    000321.4K
    11.7K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-22828 A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.6.2 through 7.6.4 may allow a remote unauthentica… https://www.cve.org/CVERecord?id=CVE-2026-22828

    Post summary

    The post announces CVE-2026-22828, a heap-based buffer overflow in Fortinet FortiAnalyzer Cloud and FortiManager Cloud, detailing affected versions but providing no patches, exploits, or PoC references.

    00000137
    57.2K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-22828 A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.6.… CVSS 8.1 Full analysis → https://sec.kaitan.id/cves/CVE-2026-22828 #Fortinet #CyberSecurity #InfoSec

    Post summary

    The post announces a high‑severity heap‑based buffer overflow vulnerability (CVE‑2026‑22828) in Fortinet FortiAnalyzer Cloud and FortiManager Cloud, offering a public analysis link and CVSS score of 8.1.

    000000
    144 followersView on X
  • Red Hornet Intel@RedHornet_Intel
    Disclosure

    CVE-2026-22828 | Fortinet FortiAnalyzer Cloud | Buffer Overflow Description A heap-based buffer overflow in FortiAnalyzer Cloud 7.6.2 through 7.6.4 allows unauth remote attackers to achieve RCE via crafted requests. Exploitation involves sending specifically crafted packets to trigger the overflow, though it demands significant effort due to ASLR and network segmentation. Severity: High Exploitation: Unknown Public PoC: Unknown Patch Available: Yes Affected Product: Fortinet FortiAnalyzer Cloud Affected Version: >= 7.6.2 and <= 7.6.4 Sources Research: https://fortiguard.fortinet.com/psirt/FG-IR-26-121

    Post summary

    Fortinet FortiAnalyzer Cloud versions 7.6.2‑7.6.4 are vulnerable to a heap-based buffer overflow that could enable remote code execution for unauthenticated attackers; a patch is available but no public PoC or exploitation evidence is reported.

    0000039
    8 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appfortinetfortianalyzer_cloud---
Appfortinetfortimanager_cloud---

Explore more