> Insertion of Sensitive 2FA Information in logs and debug command
[DATE: 14/10/2025 07:00]
[LANGUAGE: EN]
An Insertion of Sensitive Information into Log File vulnerability [CWE-532] in FortiOS may allow an attacker with at least read-only privileges to retrieve sensitive 2FA-related information via observing logs or via diagnose command. Revised on 2025-10-14 00:00:00