{"id":76842,"date":"2026-02-10T19:09:12","date_gmt":"2026-02-10T15:39:12","guid":{"rendered":"https:\/\/afaghhosting.net\/blog\/cve-2025-55018-fortinet-fortios-http-request-smuggling-vulnerability\/"},"modified":"2026-02-10T19:09:12","modified_gmt":"2026-02-10T15:39:12","slug":"cve-2025-55018-fortinet-fortios-http-request-smuggling-vulnerability","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/cve-2025-55018-fortinet-fortios-http-request-smuggling-vulnerability\/","title":{"rendered":"CVE-2025-55018 &#8211; Fortinet FortiOS HTTP Request Smuggling Vulnerability"},"content":{"rendered":"<p>CVE ID : CVE-2025-55018<\/p>\n<p>Published :  Feb. 10, 2026, 3:39 p.m. | 42\u00a0minutes ago<\/p>\n<p>Description : An inconsistent interpretation of http requests (&#8216;http request smuggling&#8217;) vulnerability in Fortinet FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4.3 through 6.4.16 may allow  an unauthenticated attacker to smuggle an unlogged http request through the firewall policies via a specially crafted header<\/p>\n<p>Severity: 5.2 | MEDIUM<\/p>\n<p>Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;\u00a0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CVE ID : CVE-2025-55018 Published : Feb. 10, 2026, 3:39 p.m. | 42\u00a0minutes ago Description : An inconsistent interpretation of http requests (&#8216;http request smuggling&#8217;) vulnerability in Fortinet FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4.3 through 6.4.16 may allow an unauthenticated attacker to smuggle an unlogged &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-76842","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/76842","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=76842"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/76842\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=76842"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=76842"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=76842"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}