> ## Content Index
> Fetch the complete content index at: https://blog.elvatis.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# 🛡️ Fortinet Monthly Recap | May 2026
- URL: https://blog.elvatis.com/fortinet-monthly-recap-may-2026/
- Published: 2026-06-01T15:39:19.000Z
- Updated: 2026-08-31T09:53:07.000Z
- Description: Monthly Overview May 2026.
- Author: E. Kohler
- Tags: Fortinet, MonthlyRecap, May

## 📦 Firmware Updates

| Product                   | Version | Type  | Documentation                                                                                                                                                                                         |
| ------------------------- | ------- | ----- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **COLLECTORWINDOWS**      | 6.2.0   | Major | [Release Notes](https://docs.fortinet.com/document/collectorwindows/6.2.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/collectorwindows/6.2.0/administration-guide)             |
| **FORTIADC**              | 7.6.7   | Patch | [Release Notes](https://docs.fortinet.com/document/fortiadc/7.6.7/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiadc/7.6.7/administration-guide)                             |
| **FORTIADC**              | 7.4.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortiadc/7.4.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiadc/7.4.11/administration-guide)                           |
| **FORTIADCMANAGER**       | 8.0.0   | Major | [Release Notes](https://docs.fortinet.com/document/fortiadcmanager/8.0.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiadcmanager/8.0.0/administration-guide)               |
| **FORTIAIOPS**            | 3.4.0   | Major | [Release Notes](https://docs.fortinet.com/document/fortiaiops/3.4.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiaiops/3.4.0/administration-guide)                         |
| **FORTIANALYZER**         | 7.4.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortianalyzer/7.4.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortianalyzer/7.4.11/administration-guide)                 |
| **FORTIANALYZER-BIGDATA** | 7.2.12  | Patch | [Release Notes](https://docs.fortinet.com/document/fortianalyzer-bigdata/7.2.12/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortianalyzer-bigdata/7.2.12/administration-guide) |
| **FORTIAP**               | 7.6.5   | Patch | [Release Notes](https://docs.fortinet.com/document/fortiap/7.6.5/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiap/7.6.5/administration-guide)                               |
| **FORTIAUTHENTICATOR**    | 6.6.10  | Patch | [Release Notes](https://docs.fortinet.com/document/fortiauthenticator/6.6.10/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiauthenticator/6.6.10/administration-guide)       |
| **FORTIMAIL**             | 8.0.0   | Major | [Release Notes](https://docs.fortinet.com/document/fortimail/8.0.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortimail/8.0.0/administration-guide)                           |
| **FORTIMAIL**             | 7.6.5   | Patch | [Release Notes](https://docs.fortinet.com/document/fortimail/7.6.5/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortimail/7.6.5/administration-guide)                           |
| **FORTIMANAGER**          | 7.4.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortimanager/7.4.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortimanager/7.4.11/administration-guide)                   |
| **FORTIMONITORONSIGHT**   | 7.2.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortimonitoronsight/7.2.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortimonitoronsight/7.2.11/administration-guide)     |
| **FORTIOS**               | 7.4.12  | Patch | [Release Notes](https://docs.fortinet.com/document/fortigate/7.4.12/fortios-release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortigate/7.4.12/administration-guide)                 |
| **FORTIOS**               | 7.4.8   | Patch | [Release Notes](https://docs.fortinet.com/document/fortigate/7.4.8/fortios-release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortigate/7.4.8/administration-guide)                   |
| **FORTIPAM**              | 1.9.0   | Major | [Release Notes](https://docs.fortinet.com/document/fortipam/1.9.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortipam/1.9.0/administration-guide)                             |
| **FORTIPORTAL**           | 7.4.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortiportal/7.4.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiportal/7.4.11/administration-guide)                     |
| **FORTIPORTAL**           | 7.2.9   | Patch | [Release Notes](https://docs.fortinet.com/document/fortiportal/7.2.9/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiportal/7.2.9/administration-guide)                       |
| **FORTIPORTAL**           | 7.0.14  | Patch | [Release Notes](https://docs.fortinet.com/document/fortiportal/7.0.14/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiportal/7.0.14/administration-guide)                     |
| **FORTIRECORDER**         | 7.2.11  | Patch | [Release Notes](https://docs.fortinet.com/document/fortirecorder/7.2.11/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortirecorder/7.2.11/administration-guide)                 |
| **FORTISIEM**             | 7.5.1   | Patch | [Release Notes](https://docs.fortinet.com/document/fortisiem/7.5.1/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortisiem/7.5.1/administration-guide)                           |
| **FORTISIEMWINDOWSAGENT** | 7.5.1   | Patch | [Release Notes](https://docs.fortinet.com/document/fortisiemwindowsagent/7.5.1/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortisiemwindowsagent/7.5.1/administration-guide)   |
| **FORTISWITCH**           | 8.0.0   | Major | [Release Notes](https://docs.fortinet.com/document/fortiswitch/8.0.0/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiswitch/8.0.0/administration-guide)                       |
| **FORTIWEBMANAGER**       | 8.0.1   | Patch | [Release Notes](https://docs.fortinet.com/document/fortiwebmanager/8.0.1/release-notes) \| [Admin Guide](https://docs.fortinet.com/document/fortiwebmanager/8.0.1/administration-guide)               |

## ⚠️ Security Advisories (CVEs)

Critical vulnerabilities (Score > 6.5) in May:

| ID                                                                | Score | Description (Affected Versions)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| ----------------------------------------------------------------- | ----- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| [CVE-2026-26083](https://nvd.nist.gov/vuln/detail/CVE-2026-26083) | 9.8   | A missing authorization vulnerability in Fortinet **FortiSandbox** 5.0.0 through 5.0.1,**FortiSandbox** 4.4.0 through 4.4.8,**FortiSandbox Cloud** 5.0.2 through 5.0.5,**FortiSandbox** PaaS 23.4 all versions,**FortiSandbox** PaaS 23.3 all versions,**FortiSandbox** PaaS 23.1 all versions,**FortiSandbox** PaaS 22.2 all versions,**FortiSandbox** PaaS 22.1 all versions,**FortiSandbox** PaaS 21.4 all versions,**FortiSandbox** PaaS 21.3 all versions,**FortiSandbox** PaaS 5.0.0 through 5.0.1,**FortiSandbox** PaaS 4.4.5 through 4.4.8 may allow an unauthenticated attacker to execute unauthorized code or commands via HTTP requests. |
| [CVE-2026-44277](https://nvd.nist.gov/vuln/detail/CVE-2026-44277) | 9.8   | A improper access control vulnerability in Fortinet **FortiAuthenticator** 8.0.2,**FortiAuthenticator** 8.0.0,**FortiAuthenticator** 6.6.0 through 6.6.8,**FortiAuthenticator** 6.5.0 through 6.5.6 may allow attacker to execute unauthorized code or commands via crafted requests.                                                                                                                                                                                                                                                                                                                                                                |
| [CVE-2025-53844](https://nvd.nist.gov/vuln/detail/CVE-2025-53844) | 8.8   | A out-of-bounds write vulnerability in Fortinet **FortiOS** 7.6.0 through 7.6.3,**FortiOS** 7.4.0 through 7.4.8,**FortiOS** 7.2.0 through 7.2.11allows attacker to execute unauthorized code or commands via specially crafted packets.                                                                                                                                                                                                                                                                                                                                                                                                              |
| [CVE-2025-53681](https://nvd.nist.gov/vuln/detail/CVE-2025-53681) | 7.2   | An improper neutralization of special elements used in an SQL Command ("SQL Injection&") vulnerability \[CWE-89\] vulnerability in Fortinet **FortiMail** 7.6.0 through 7.6.3,**FortiMail** 7.4.0 through 7.4.5,**FortiMail** 7.2.0 through 7.2.8 allows an authenticated privileged attacker to execute unauthorized code or commands via specifically crafted HTTP or HTTPS requests.                                                                                                                                                                                                                                                              |
| [CVE-2025-53680](https://nvd.nist.gov/vuln/detail/CVE-2025-53680) | 6.7   | An improper neutralization of special elements used in an OS command ("OS Command Injection") vulnerability \[CWE-78\] vulnerability in Fortinet **FortiAP** 7.6.0 through 7.6.2,**FortiAP** 7.4.0 through 7.4.5,**FortiAP** 7.2 all versions,**FortiAP** 7.0 all versions,**FortiAP** 6.4 all versions,**FortiAP**\-U 7.0.0 through 7.0.5,**FortiAP**\-U 6.2 all versions,**FortiAP**\-W2 7.4.0 through 7.4.4,**FortiAP**\-W2 7.2 all versions,**FortiAP**\-W2 7.0 all versions allows an authenticated privileged attacker to execute unauthorized code or commands via crafted CLI requests.                                                      |
| [CVE-2025-53870](https://nvd.nist.gov/vuln/detail/CVE-2025-53870) | 6.7   | An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet **FortiAP** 7.6.0 through 7.6.2,**FortiAP** 7.4.0 through 7.4.5,**FortiAP** 7.2 all versions,**FortiAP** 7.0 all versions,**FortiAP** 6.4 all versions,**FortiAP**\-W2 7.4.0 through 7.4.4,**FortiAP**\-W2 7.2 all versions,**FortiAP**\-W2 7.0 all versions may allow an authenticated attacker to execute unauthorized code or commands via a specifically crafted cli command.                                                                                                                                            |