P.01CVE-2025-68686: The FortiOS Patch Bypass That Punishes Devices You Never Cleaned Up
CISA added CVE-2025-68686, a FortiOS bypass of the SSL-VPN symlink persistence patch, to its KEV catalog on July 27. It only matters if a device was ever compromised through an older Fortinet bug and never forensically cleaned.



