Fortinet Rushes Emergency Fix for Actively Exploited FortiClient EMS Zero-Day CVE-2026-35616
Fortinet has released an emergency hotfix for CVE-2026-35616, a critical 9.1-scored authentication bypass flaw in FortiClient EMS that is already being exploited in the wild. CISA added the vulnerability to its Known Exploited Vulnerabilities catalog, mandating federal agencies patch by April 9.