Security Advisory

CVE-2025-61886

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-14 15:38:21
Last updated 2026-04-14 16:46:15
Assigner fortinet
State PUBLISHED

Description

An Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability [CWE-79] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox PaaS 5.0.0 through 5.0.4 may allow an attacker to perform an XSS attack via crafted HTTP requests.