CVE-2026-71408
Last modified
CVE-2026-71408 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack vector here>.
Description
A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack vector here>
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Fortinet | FortiOS | >= 7.6.0, <= 7.6.6; >= 7.4.0, <= 7.4.12; >= 7.2.0, <= 7.2.13; >= 7.0.0, <= 7.0.19; >= 6.4.0, <= 6.4.16 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-71408?
How severe is CVE-2026-71408?
How do I fix CVE-2026-71408?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-71392GNU Emacs for Android is vulnerable to an integer overflow i…5.3
- CVE-2026-71393GNU Emacs for Android is vulnerable to an integer overflow i…5.3
- CVE-2026-71394GNU Emacs for Android improperly validates the table header …5.3
- CVE-2026-71398Adobe Campaign Classic (ACC) is affected by an Incorrect Aut…10
- CVE-2026-7140A vulnerability has been found in Totolink A8000RU 7.1cu.643…9.8
- CVE-2026-71407A Stack-based Buffer Overflow vulnerability [CWE-121] vulner…5.6
- CVE-2026-7141A vulnerability was found in vllm up to 0.19.0. The affected…5.6
- CVE-2026-7142A vulnerability was determined in Wooey up to 0.13.2. The im…6.3
- CVE-2026-7143A vulnerability was identified in 1000 Projects Portfolio Ma…6.3
- CVE-2026-71430node-re2 provides RE2 regular expression bindings for Node.j…6.2
- CVE-2026-71433LangGraph Checkpoint Postgres and SQLite Checkpoint are the …5.3
- CVE-2026-71434Statamic is a Laravel and Git powered content management sys…5.3
Are you affected by CVE-2026-71408?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
