Fortinet Zero-Day Exploitation and CISA Directive
Fortinet has issued an emergency patch for a zero-day vulnerability, CVE-2026-35616, in FortiClient, which allows for authentication bypass. This flaw has been actively exploited, prompting CISA to mandate federal agencies to patch the Fortinet EMS flaw by Friday. This highlights the urgency for organizations using Fortinet products to apply the patch immediately to prevent unauthorized access and potential data breaches.