Fortinet Warned as Three Critical FortiSandbox Bugs Come Under Attack

2026-06-16T14:51:46Zd953aef1e002b1efe9402d507c5ba94cc1f9cdcf59280ac67982dd02bc8c4df1
Awesome MotiveCISACisco Catalyst SD-WANFortiSandboxFortinetGentlemen ransomwareLiteSpeedMackay SugarNovo NordiskPalo Alto PAN-OSUNC6508WordPressactive exploitationcyber espionagedata breachknown exploited vulnerabilitiesmedical researchransomwaresupply chain

What happened

Multiple active-exploitation and supply-chain incidents reported: attackers are actively exploiting critical vulnerabilities in Fortinet FortiSandbox (three flaws), Cisco Catalyst SD-WAN Manager (CVE-2026-20262, arbitrary file write), and Palo Alto PAN-OS (CVE-2026-0257, VPN/auth bypass). CISA added the Cisco Catalyst and a LiteSpeed cPanel plugin flaw to its Known Exploited Vulnerabilities catalog. Separately, a supply-chain compromise of Awesome Motive’s CDN backdoored popular WordPress plugins (OptinMonster, TrustPulse, PushEngage), and high-impact intrusions and breaches were disclosed — e

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
d953aef1e002b1efe9402d507c5ba94cc1f9cdcf59280ac67982dd02bc8c4df1
Enrichment time
2026-06-16T14:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.