All CVEs
Vulnerability intelligence

CVE-2026-39813

CWE-24

A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8 may allow attacker to escalation of privilege via specially crafted HTTP requests.

CVSS Score
9.1
Critical
EPSS — Exploit Probability
23%
Riskier than 98% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
Patch available
Vendor fix published
NVD entry Vendor patch PoC / advisory

5 articles across 4 outlets · first covered Apr 15, 2026 · latest Jun 17, 2026

Coverage timeline