> ZTNA Server Improper Certificate Validation
[DATE: 14/10/2025 07:00]
[LANGUAGE: EN]
An Improper Validation of Certificate with Host Mismatch vulnerability [CWE-297] in FortiOS and FortiProxy ZTNA proxy may allow an unauthenticated attacker in a man-in-the middle position to intercept and tamper with connections to the ZTNA proxy Revised on 2025-10-14 00:00:00