CVE-2024-55591 being exploited in the wild: Critical authentication bypass in Node.js WebSocket module
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS and FortiProxy may allow a remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module.