---
id: CVE-2025-62675
title: >-
  An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response
  Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0
  through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy
  7.6.0 …
summary: >-
  An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response
  Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0
  through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy
  7.6.0 …
severity: low
cvss: 3.4
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:N'
cwe:
  - CWE-113
vendor: fortinet
product: fortiproxy
affected:
  - 'fortiproxy >= 7.2.0, < 7.6.5'
  - 'fortios >= 7.2.0, < 7.6.5'
patched:
  - fortiproxy 7.6.5
  - fortios 7.6.5
published: '2026-07-14'
updated: '2026-09-29'
sourceUpdated: '2026-09-29T15:10:00.193'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-62675'
references:
  - url: 'https://fortiguard.fortinet.com/psirt/FG-IR-26-152'
    label: psirt@fortinet.com
  - url: 'https://cert-portal.siemens.com/productcert/html/ssa-864900.html'
    label: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
tags:
  - nvd
epss: 0.00271
epssPercentile: 0.17366
ingestedAt: '2026-09-29T16:39:33.226Z'
---

## Overview

An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions may allow an attacker in possession of a valid web filter override token to inject arbitrary headers via tricking a user into clicking on a crafted link.

## Affected

- `fortiproxy >= 7.2.0, < 7.6.5`
- `fortios >= 7.2.0, < 7.6.5`

## Remediation

Upgrade past the affected range:

- `fortiproxy 7.6.5`
- `fortios 7.6.5`
