Threat actors are exploiting three security vulnerabilities in Fortinet FortiSandbox, tracked as CVE-2026-39808, CVE-2026-25089, & CVE-2026-39813. Successful exploitation of the vulnerabilities could lead to OS command injection, authentication bypass, and privilege escalation.