A vulnerability identified as critical has been detected in Fortinet FortiSandbox Cloud, FortiSandbox and FortiSandbox PaaS up to 4.4.8/5.0.1. Affected by this vulnerability is an unknown functionality of the component HTTP Request Handler. This manipulation causes missing authorization.

This vulnerability appears as CVE-2026-26083. The attack may be initiated remotely. There is no available exploit.