VulnerabilitiesMay 29, 2026
RT @DarkWebInformer: ‼️ One Forged Header: Unauthenticated Authentication Bypass in Fortinet Fort...
Unauthenticated authentication bypass vulnerability discovered in Fortinet FortiClient EMS via forged header.
Vendor Watch
Run Fortinet?
Get an email when a reviewed story names Fortinet, usually within the hour.
Free. Your list stays private and never appears in a subject line. One click stops it. How Vendor Watch works
Summary
A critical unauthenticated authentication bypass vulnerability (CVE-2026-35616) has been discovered in Fortinet FortiClient EMS that allows attackers to bypass authentication using a forged header. This vulnerability could enable unauthorized access to the endpoint management system without requiring valid credentials. The issue affects Fortinet's widely-deployed endpoint security and management platform.
Indicators of Compromise
- cve — CVE-2026-35616
Entities
Fortinet (vendor)FortiClient EMS (product)