CVE-2026-22153
⚠️ highSummary
An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way.
CVSS Score
8.1
High
EPSS Score
0.1
Exploit Probability
Published Date
2026-02-10
First Seen: 2026-02-11
📊 Relative Risk Intelligence
This CVE is High Risk - more severe than 77.5% of all 326,604 vulnerabilities in our database.
#73,427
Top 25% most severe
Severity Percentile
Last Modified
2026-02-12
Source
NVD 🔗
CVSS Vector 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE IDs (Weakness Types)