PT-2026-25941 · Fortinet+1 · Fortios+1
Bugmithlegend
+1
·
Published
2026-03-17
·
Updated
2026-04-02
·
CVE-2026-34567
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
CI4MS versions prior to 0.31.0.0
Fortinet FortiOS (affected versions not specified)
Description
CI4MS, a CodeIgniter 4-based CMS skeleton, is susceptible to stored cross-site scripting (XSS) due to improper sanitization of user-controlled input when creating or editing blog posts in the Categories section. This allows an attacker to inject a malicious JavaScript payload into the Categories content, which is then stored server-side and rendered unsafely when the Categories are viewed via blog posts. Fortinet FortiOS is affected by a heap-based buffer overflow in the SSL VPN component, enabling attackers to gain full control of the firewall by sending a crafted packet without authentication. This impacts thousands of enterprise perimeters.
Recommendations
Update CI4MS to version 0.31.0.0 or later.
Upgrade Fortinet FortiOS to version 7.4.6 or later, 7.6.1 or later, or the latest patched build via FortiGuard/auto-update and reboot.
Exploit
Fix
RCE
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ci4Ms
Fortios