Daily Breach

Vulnerability

Critical Fortinet FortiOS SSO Flaw CVE-2026-24858 Actively Exploited, Patches Released

Introduction Fortinet has started rolling out security updates to remediate a critical authentication bypass vulnerability in FortiOS that is being actively exploited in the wild. The flaw, tracked as CVE-2026-24858, impacts FortiCloud single sign-on functionality and poses a significant risk to organizations relying on Fortinet infrastructure. Background and Context The vulnerability carries a CVSS score […]

Vulnerability

Critical Authentication Bypass in Service Finder Bookings (CVE-2025-5947) — Patch Now to Prevent Full Site Takeover

Introduction A critical vulnerability in the Service Finder Bookings component used by the Service Finder WordPress theme permits unauthenticated attackers to impersonate any user — including administrators — and fully compromise affected sites. The issue, tracked as CVE-2025-5947, should be treated as an urgent patch-and-audit priority for site owners and hosting providers. Background / Context […]