Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2025-68686) CISA added CVE-2025-68686 to the Known Exploited Vulnerabilities catalog. Affected product: Fortinet FortiOS. Remediation due date: 2026-08-10. KEV ✓ EPSS 0.01 CVE-2025-68686 Fortinet US CISA KEV · 27. 7. 02:00