
FortiSandbox CVE-2026-26083: unauthenticated code execution risk in the web UI
Fortinet rates CVE-2026-26083 as critical and says the FortiSandbox web UI may allow unauthenticated attackers to execute unauthorized code or commands. This alert covers affected versions, upgrade priorities, and exposure reduction.
Eng. Hussein Ali Al-AssaadMay 19, 20264 min read