# CVE-2025-25255

## Summary

- **CVE ID:** CVE-2025-25255
- **Severity:** MEDIUM
- **CVSS Score:** 4.8 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C)
- **CWE:** CWE-358
- **Published:** Oct 14, 2025
- **Last Modified:** Mar 12, 2026

## Description

An Improperly Implemented Security Check for Standard vulnerability [CWE-358] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4.0 through 7.4.11, FortiProxy 7.2 all versions, FortiProxy 7.0.1 through 7.0.22 may allow an unauthenticated proxy user to bypass the domain fronting protection feature via crafted HTTP requests.

## Affected Products

- Fortinet — FortiOS (7.6.0)
- Fortinet — FortiProxy (7.6.0)
- Fortinet — FortiProxy (7.4.0)
- Fortinet — FortiProxy (7.2.0)
- Fortinet — FortiProxy (7.0.1)

## References

- [CNA](https://fortiguard.fortinet.com/psirt/FG-IR-24-372)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.40%
- **EPSS Percentile:** 33.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._