---
id: CVE-2025-58324
title: >-
  An improper neutralization of input during web page generation vulnerability
  [CWE-79] in FortiSIEM 7.2.0 through 7.2.2, 7.1 all versions, 7.0 all versions,
  6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3
  all v…
summary: >-
  An improper neutralization of input during web page generation vulnerability
  [CWE-79] in FortiSIEM 7.2.0 through 7.2.2, 7.1 all versions, 7.0 all versions,
  6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3
  all v…
severity: medium
cvss: 6.4
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-79
vendor: fortinet
product: fortisiem
affected:
  - 'fortisiem >= 6.2.0, < 7.2.3'
patched:
  - fortisiem 7.2.3
published: '2025-10-14'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T11:10:00.250'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-58324'
references:
  - url: 'https://fortiguard.fortinet.com/psirt/FG-IR-24-280'
    label: psirt@fortinet.com
tags:
  - nvd
epss: 0.0027
epssPercentile: 0.17547
ingestedAt: '2026-10-08T11:31:27.390Z'
---

## Overview

An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiSIEM 7.2.0 through 7.2.2, 7.1 all versions, 7.0 all versions, 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3 all versions, 6.2 all versions may allow an authenticated attacker to perform a stored cross site scripting (XSS) attack via crafted HTTP requests.

## Affected

- `fortisiem >= 6.2.0, < 7.2.3`

## Remediation

Upgrade past the affected range:

- `fortisiem 7.2.3`
