Signal

Ivanti and fortinet ship fixes for high-severity authentication bypass and related flaws

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-02-11 08:16 UTCUpdated 2026-02-11 12:14 UTC
rss
vulnerabilitypatchingadvisoryivantifortinetfortios
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (2 domains)domains are deduped. counts indicate coverage, not truth.
2 top sources shown
NCSC-2026-0061 [1.00] [M/H] Kwetsbaarheden verholpen in Fortinet FortiOS
NCSC NL Security Advisories · News · advisories.ncsc.nl · 2026-02-11 11:34 UTC
limited source diversity in top sources
Overview

NCSC NL and SecurityWeek report on patches for high-severity vulnerabilities in Ivanti Endpoint Manager and Fortinet FortiOS.

Entities
IvantiFortinetSecurityWeekIvanti Endpoint ManagerFortinet FortiOS
Score total
1.3
Momentum 24h
4
Posts
4
Origins
2
Source types
1
Duplicate ratio
0%
Why now
  • NCSC NL issued fresh advisories covering the newly released fixes
  • SecurityWeek amplified the patch details, increasing operational urgency
  • Affected version ranges are specified, enabling immediate scoping and remediation
Why it matters
  • Auth bypass and credential exposure risks can lead to rapid compromise of enterprise environments
  • SQL injection and request-based exploits can expose sensitive data or enable unauthorized actions
  • FortiOS and Endpoint Manager are common infrastructure components, increasing potential blast radius
LLM analysis
Topic mix: lowPromo risk: lowSource quality: high
Recurring claims
  • Ivanti patched Endpoint Manager vulnerabilities including an authentication bypass that could allow remote, unauthenticated access to stored credentials.
  • Fortinet patched FortiOS vulnerabilities including authentication bypass scenarios and other issues that could be exploited via specially crafted requests, depending on configuration and attacker privileges.
How sources frame it
  • NCSC NL Security Advisories: neutral
  • SecurityWeek: neutral
Consolidated vendor patch advisories and trade press coverage into a single patch-focused narrative.
All evidence
All evidence
Ivanti Patches Endpoint Manager Vulnerabilities Disclosed in October 2025
SecurityWeek · securityweek.com · 2026-02-11 12:14 UTC
NCSC-2026-0061 [1.00] [M/H] Kwetsbaarheden verholpen in Fortinet FortiOS
NCSC NL Security Advisories · advisories.ncsc.nl · 2026-02-11 11:34 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 2Origin domains: 2Duplicates: -
Showing 2 / 0
Top publishers (this list)
  • SecurityWeek (1)
  • NCSC NL Security Advisories (1)
Top origin domains (this list)
  • securityweek.com (1)
  • advisories.ncsc.nl (1)