By vendor

Forta vulnerabilities

Known CVEs affecting Forta products, prioritized by severity, with SEC.co remediation and detection guidance.

1 published vulnerability

  • CVE-2026-9863HIGH 7.5

    Fortra BoKS Manager, a privileged access management tool, contains a command injection vulnerability in its legacy client upgrade mechanism. When a compromised or malicious tar-based client is selected for upgrade or patching, an attacker can execute arbitrary OS commands on the BoKS Master server. This vulnerability requires user interaction (an administrator initiating an upgrade) and network access, but the impact is severe—attackers gain the ability to compromise the core access control infrastructure that BoKS Manager protects.