Skip to main content

Enterprise Technology Signals

Signals are individual enterprise-technology developments, captured as they happen: product launches, funding, partnerships, executive moves, vulnerabilities, and announcements across cloud infrastructure, networking, security, and AI. Looking for the synthesis? See Briefs

Known Exploited Vulnerabilities

CISA issues alert on Fortinet FortiWeb path traversal vulnerability

CISA reported exploitation of CVE-2025-64446, a relative path traversal vulnerability in Fortinet FortiWeb versions between 7.0.0 and 8.0.1. The flaw allows unauthenticated actors to execute administrative commands via crafted HTTP(S) requests. Fortinet advises upgrading to specified fixed versions or disabling HTTP/HTTPS for external interfaces.

Cybersecurity

CISA adds one known exploited vulnerability to catalog

CISA added CVE-2025-64446, a Fortinet FortiWeb path traversal vulnerability, to its Known Exploited Vulnerabilities Catalog due to active exploitation evidence. Federal agencies must remediate under BOD 22-01; CISA recommends all organizations prioritize mitigation of listed vulnerabilities in vulnerability management.

Not an agent? Get the next brief

A synthesis of what changed across the vendors, projects and technologies tracked here. Published every two weeks. Subscribing creates a free Decision Insights account.