{
    "document": {
        "category": "csaf_security_advisory",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "nl",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this page to enhance access to its information and security advisories. The use of this security advisory is subject to the following terms and conditions:\n\n    NCSC-NL makes every reasonable effort to ensure that the content of this page is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or continuous keeping up-to-date. The information contained in this security advisory is intended solely for the purpose of providing general information to professional users. No rights can be derived from the information provided therein.\n\n    NCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of this security advisory. This includes damage resulting from the inaccuracy of incompleteness of the information contained in the advisory.\n    This security advisory is subject to Dutch law. All disputes related to or arising from the use of this advisory will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            },
            {
                "category": "description",
                "text": "Fortinet heeft kwetsbaarheden verholpen in FortiOS.",
                "title": "Feiten"
            },
            {
                "category": "description",
                "text": "De kwetsbaarheden omvatten onder andere een onjuiste certificaatvalidatie die het mogelijk maakt voor aanvallers om verbinding te maken met FortiClient via ingetrokken certificaten, wat leidt tot ongeautoriseerde toegang. Daarnaast zijn er kwetsbaarheden in de sessie-expiratie en privilegebeheer die aanvallers in staat stellen om ongeautoriseerde toegang te verkrijgen tot gevoelige instellingen en systemen. De exploitatie van deze kwetsbaarheden kan leiden tot gevolgen voor de integriteit van de netwerken en systemen die deze producten gebruiken.",
                "title": "Interpretaties"
            },
            {
                "category": "description",
                "text": "Fortinet heeft updates uitgebracht om de kwetsbaarheden te verhelpen. Zie bijgevoegde referenties voor meer informatie.",
                "title": "Oplossingen"
            },
            {
                "category": "general",
                "text": "medium",
                "title": "Kans"
            },
            {
                "category": "general",
                "text": "high",
                "title": "Schade"
            },
            {
                "category": "general",
                "text": "Weak Authentication",
                "title": "CWE-1390"
            },
            {
                "category": "general",
                "text": "Improper Restriction of Communication Channel to Intended Endpoints",
                "title": "CWE-923"
            },
            {
                "category": "general",
                "text": "Improper Validation of Certificate with Host Mismatch",
                "title": "CWE-297"
            },
            {
                "category": "general",
                "text": "Insufficient Session Expiration",
                "title": "CWE-613"
            },
            {
                "category": "general",
                "text": "Channel Accessible by Non-Endpoint",
                "title": "CWE-300"
            },
            {
                "category": "general",
                "text": "Improper Certificate Validation",
                "title": "CWE-295"
            },
            {
                "category": "general",
                "text": "Incomplete Cleanup",
                "title": "CWE-459"
            },
            {
                "category": "general",
                "text": "Server-Side Request Forgery (SSRF)",
                "title": "CWE-918"
            },
            {
                "category": "general",
                "text": "Exposure of Sensitive Information to an Unauthorized Actor",
                "title": "CWE-200"
            },
            {
                "category": "general",
                "text": "Improper Privilege Management",
                "title": "CWE-269"
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "Nationaal Cyber Security Centrum",
            "namespace": "https://www.ncsc.nl/"
        },
        "references": [
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-23-008"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-23-342"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-23-375"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-058"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-257"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-339"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-365"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-544"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-25-006"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-287"
            }
        ],
        "title": "Kwetsbaarheden verholpen in Fortinet FortiOS",
        "tracking": {
            "current_release_date": "2025-06-12T11:04:45.167843Z",
            "generator": {
                "date": "2025-06-05T14:45:00Z",
                "engine": {
                    "name": "V.A.",
                    "version": "1.1"
                }
            },
            "id": "NCSC-2025-0192",
            "initial_release_date": "2025-06-12T11:04:45.167843Z",
            "revision_history": [
                {
                    "date": "2025-06-12T11:04:45.167843Z",
                    "number": "1.0.0",
                    "summary": "Initiele versie"
                }
            ],
            "status": "final",
            "version": "1.0.0"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:fortinet/6.2.17",
                                "product": {
                                    "name": "vers:fortinet/6.2.17",
                                    "product_id": "CSAFPID-2906543"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.6.0|<=7.6.1",
                                "product": {
                                    "name": "vers:semver/7.6.0|<=7.6.1",
                                    "product_id": "CSAFPID-2906446",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.4.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/6.2.0|<=6.2.17",
                                "product": {
                                    "name": "vers:semver/6.2.0|<=6.2.17",
                                    "product_id": "CSAFPID-2906435",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.2.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/6.4.0|<=6.4.16",
                                "product": {
                                    "name": "vers:semver/6.4.0|<=6.4.16",
                                    "product_id": "CSAFPID-2632962",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.2.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.0.0|<=7.0.17",
                                "product": {
                                    "name": "vers:semver/7.0.0|<=7.0.17",
                                    "product_id": "CSAFPID-2632961",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.2.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.2.0|<=7.2.11",
                                "product": {
                                    "name": "vers:semver/7.2.0|<=7.2.11",
                                    "product_id": "CSAFPID-2632960",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.2.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.4.0|<=7.4.7",
                                "product": {
                                    "name": "vers:semver/7.4.0|<=7.4.7",
                                    "product_id": "CSAFPID-2632959",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:fortinet:fortios:6.4.0:*:*:*:*:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiOS"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/1.1.0|<=1.1.6",
                                "product": {
                                    "name": "vers:semver/1.1.0|<=1.1.6",
                                    "product_id": "CSAFPID-1299473"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/1.2.0|<=1.2.13",
                                "product": {
                                    "name": "vers:semver/1.2.0|<=1.2.13",
                                    "product_id": "CSAFPID-1299472"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/2.0.0|<=2.0.14",
                                "product": {
                                    "name": "vers:semver/2.0.0|<=2.0.14",
                                    "product_id": "CSAFPID-1299471"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.0.0|<=7.0.20",
                                "product": {
                                    "name": "vers:semver/7.0.0|<=7.0.20",
                                    "product_id": "CSAFPID-1768230"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.2.0|<=7.2.14",
                                "product": {
                                    "name": "vers:semver/7.2.0|<=7.2.14",
                                    "product_id": "CSAFPID-2906444"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.4.0|<=7.4.7",
                                "product": {
                                    "name": "vers:semver/7.4.0|<=7.4.7",
                                    "product_id": "CSAFPID-2906447"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiProxy"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.0.0|<=7.0.14",
                                "product": {
                                    "name": "vers:semver/7.0.0|<=7.0.14",
                                    "product_id": "CSAFPID-1768242"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.2.0|<=7.2.6",
                                "product": {
                                    "name": "vers:semver/7.2.0|<=7.2.6",
                                    "product_id": "CSAFPID-2013415"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.4.0",
                                "product": {
                                    "name": "vers:unknown/7.4.0",
                                    "product_id": "CSAFPID-1299459"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiClientWindows"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.4.0",
                                "product": {
                                    "name": "vers:unknown/7.4.0",
                                    "product_id": "CSAFPID-1768181"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.2.0|<=7.2.4",
                                "product": {
                                    "name": "vers:semver/7.2.0|<=7.2.4",
                                    "product_id": "CSAFPID-1768182"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.0.0|<=7.0.13",
                                "product": {
                                    "name": "vers:semver/7.0.0|<=7.0.13",
                                    "product_id": "CSAFPID-1768183"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiClientEMS"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.4.0|<=7.4.6",
                                "product": {
                                    "name": "vers:semver/7.4.0|<=7.4.6",
                                    "product_id": "CSAFPID-1768203"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/7.6.0|<=7.6.1",
                                "product": {
                                    "name": "vers:semver/7.6.0|<=7.6.1",
                                    "product_id": "CSAFPID-1768202"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiWeb"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:fortinet/24.4.b",
                                "product": {
                                    "name": "vers:fortinet/24.4.b",
                                    "product_id": "CSAFPID-2906528"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:fortinet/25.1.a.2",
                                "product": {
                                    "name": "vers:fortinet/25.1.a.2",
                                    "product_id": "CSAFPID-2906514"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:fortinet/25.1.c",
                                "product": {
                                    "name": "vers:fortinet/25.1.c",
                                    "product_id": "CSAFPID-2906527"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FortiSASE"
                    }
                ],
                "category": "vendor",
                "name": "Fortinet"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2025-24471",
            "cwe": {
                "id": "CWE-295",
                "name": "Improper Certificate Validation"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Certificate Validation",
                    "title": "CWE-295"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2025-24471 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2025/cve-2025-24471.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 6.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2025-24471"
        },
        {
            "cve": "CVE-2024-50562",
            "cwe": {
                "id": "CWE-613",
                "name": "Insufficient Session Expiration"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Insufficient Session Expiration",
                    "title": "CWE-613"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-50562 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2024/cve-2024-50562.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N",
                        "baseScore": 4.8,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2024-50562"
        },
        {
            "cve": "CVE-2025-22862",
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2025-22862 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2025/cve-2025-22862.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:C",
                        "baseScore": 6.7,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2025-22862"
        },
        {
            "cve": "CVE-2025-22254",
            "cwe": {
                "id": "CWE-269",
                "name": "Improper Privilege Management"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Privilege Management",
                    "title": "CWE-269"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2025-22254 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2025/cve-2025-22254.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H",
                        "baseScore": 6.6,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2025-22254"
        },
        {
            "cve": "CVE-2024-50568",
            "cwe": {
                "id": "CWE-300",
                "name": "Channel Accessible by Non-Endpoint"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Channel Accessible by Non-Endpoint",
                    "title": "CWE-300"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-50568 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2024/cve-2024-50568.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 5.9,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2024-50568"
        },
        {
            "cve": "CVE-2025-25250",
            "cwe": {
                "id": "CWE-200",
                "name": "Exposure of Sensitive Information to an Unauthorized Actor"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Exposure of Sensitive Information to an Unauthorized Actor",
                    "title": "CWE-200"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2025-25250 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2025/cve-2025-25250.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N",
                        "baseScore": 4.3,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2025-25250"
        },
        {
            "cve": "CVE-2023-29184",
            "cwe": {
                "id": "CWE-459",
                "name": "Incomplete Cleanup"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Incomplete Cleanup",
                    "title": "CWE-459"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2023-29184 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2023/cve-2023-29184.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:L/A:N",
                        "baseScore": 3.2,
                        "baseSeverity": "LOW"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2023-29184"
        },
        {
            "cve": "CVE-2025-22251",
            "cwe": {
                "id": "CWE-923",
                "name": "Improper Restriction of Communication Channel to Intended Endpoints"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Restriction of Communication Channel to Intended Endpoints",
                    "title": "CWE-923"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2025-22251 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2025/cve-2025-22251.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
                        "baseScore": 3.1,
                        "baseSeverity": "LOW"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2025-22251"
        },
        {
            "cve": "CVE-2024-54019",
            "cwe": {
                "id": "CWE-297",
                "name": "Improper Validation of Certificate with Host Mismatch"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Validation of Certificate with Host Mismatch",
                    "title": "CWE-297"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-54019 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2024/cve-2024-54019.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N",
                        "baseScore": 4.8,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2024-54019"
        },
        {
            "cve": "CVE-2024-32119",
            "cwe": {
                "id": "CWE-1390",
                "name": "Weak Authentication"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Weak Authentication",
                    "title": "CWE-1390"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-32119 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2024/cve-2024-32119.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L",
                        "baseScore": 4.8,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2024-32119"
        },
        {
            "cve": "CVE-2023-48786",
            "cwe": {
                "id": "CWE-918",
                "name": "Server-Side Request Forgery (SSRF)"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Server-Side Request Forgery (SSRF)",
                    "title": "CWE-918"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2906543",
                    "CSAFPID-2906446",
                    "CSAFPID-2906435",
                    "CSAFPID-2632962",
                    "CSAFPID-2632961",
                    "CSAFPID-2632960",
                    "CSAFPID-2632959",
                    "CSAFPID-1299473",
                    "CSAFPID-1299472",
                    "CSAFPID-1299471",
                    "CSAFPID-1768230",
                    "CSAFPID-2906444",
                    "CSAFPID-2906447",
                    "CSAFPID-1768242",
                    "CSAFPID-2013415",
                    "CSAFPID-1299459",
                    "CSAFPID-1768181",
                    "CSAFPID-1768182",
                    "CSAFPID-1768183",
                    "CSAFPID-1768203",
                    "CSAFPID-1768202",
                    "CSAFPID-2906528",
                    "CSAFPID-2906514",
                    "CSAFPID-2906527"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2023-48786 | NCSC-NL Website",
                    "url": "https://vulnerabilities.ncsc.nl/csaf/v2/2023/cve-2023-48786.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N",
                        "baseScore": 4.3,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-2906543",
                        "CSAFPID-2906446",
                        "CSAFPID-2906435",
                        "CSAFPID-2632962",
                        "CSAFPID-2632961",
                        "CSAFPID-2632960",
                        "CSAFPID-2632959",
                        "CSAFPID-1299473",
                        "CSAFPID-1299472",
                        "CSAFPID-1299471",
                        "CSAFPID-1768230",
                        "CSAFPID-2906444",
                        "CSAFPID-2906447",
                        "CSAFPID-1768242",
                        "CSAFPID-2013415",
                        "CSAFPID-1299459",
                        "CSAFPID-1768181",
                        "CSAFPID-1768182",
                        "CSAFPID-1768183",
                        "CSAFPID-1768203",
                        "CSAFPID-1768202",
                        "CSAFPID-2906528",
                        "CSAFPID-2906514",
                        "CSAFPID-2906527"
                    ]
                }
            ],
            "title": "CVE-2023-48786"
        }
    ]
}