CVE-2026-39808
KEV Critical · CVSS 9.8- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- Listed
- 2026-07-16
- Class
- other
- CWE-78
Description
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>
References
Status: profiled · ingested 2026-07-17T06:00:46.000Z