A improper neutralization of script-related html tags in a web page (basic xss) vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4, FortiSIEM 7.2.0 through 7.2.6, FortiSIEM 7.1 all versions, FortiSIEM 7.0 all versions, FortiSIEM 6.7 all versions, FortiSIEM 6.6 all versions, FortiSIEM 6.5 all versions, FortiSIEM 6.4 all versions may allow attacker to execute unauthorized code or commands via <insert attack vector here>
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-149 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
15 Jul 2026, 18:47
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://fortiguard.fortinet.com/psirt/FG-IR-26-149 - Vendor Advisory | |
| First Time |
Fortinet fortisiem
Fortinet |
|
| CPE | cpe:2.3:a:fortinet:fortisiem:7.4.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:* |
15 Jul 2026, 14:18
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-15 14:18
Updated : 2026-07-15 18:47
NVD link : CVE-2026-59838
Mitre link : CVE-2026-59838
CVE.ORG link : CVE-2026-59838
JSON object : View
Products Affected
fortinet
- fortisiem
CWE
CWE-80
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
