Fortinet white logo
Fortinet white logo

Resolved Issues

Resolved Issues

The resolved issues listed below do not list every bug that has been corrected with this release. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Antispam/Antivirus

Bug ID

Description

797391

URL click protection does not work correctly with URL rewrites not occurring within email.

803094

Content filter with wildcard patterns cannot detect Thai language.

815586

FortiSandbox category timed out, with action taken before timeout was triggered.

827697

Email address starting with "."(dot) is not rejected.

833273

Email attachment from MS365 is not delivered when CDR is triggered.

813613

When using the "Rewrite recipient email address" action, irrelevant headers are removed.

811579

The block list is only applied to the first recipient.

822265

DKIM check fails incorrectly for valid DKIM key.

818908

URL rewrite may not work properly in some cases.

824015

SPF check failed due to DNS look up limit reached.

824290

In some cases, a disclaimer may be duplicated when replying to an email thread.

810260

Blocklist does not work when the sending email address is between quotation marks.

826087

FortiMail detects .jtd files as Microsoft files.

791736

In some cases, the WebFilter can only detect part of the URL.

813318

Client names cannot be blocked using reverse DNS patterns.

794309

Final action of DMARC is not applied.

792507

Quarantine report does not work for associate domains when using domain recipient policy with regular expressions.

834296

Released email from system quarantine fails DKIM check at Outlook.com.

834467

In some cases, email get corrupted when using CDR.

Mail delivery

Bug ID

Description

819657

The "for" clause in the Received Header contains another recipient address when Spam outbreak is triggered.

823544

Email delivery is delayed with too many FortiSandbox mail queues.

821755

Releasing email from on demand system quarantine is delivered without the original email as attachment.

769015

ACL safe/safe&relay does not work properly on FortiMail 200F model.

732598

In some cases, email delivery may be delayed after Microsoft 365 real-time scanning.

System

Bug ID

Description

794074

SSO administrator login not working when post-login-banner is enabled.

807614

DKIM keys from some domains are missing.

799789

Invalid DKIM signature issue.

797330

Disclaimers are added to email in the incorrect place.

815286

SPF check receives PERM_ERROR message when sender record includes macros and IPv6 client IP addresses.

692481

Custom email template variable %%ORIG_FROM%% not working as intended.

811593

Attachment scan action with two file filters stops with replace action.

811446

Scheduled Scan set to "daily" is defaulting to 24-hour window instead of the shorter time period configured.

810685

In server mode, LDAP users are unable to delete user mailbox data.

819717

Disclaimer not being added to all emails.

817272

Issue with HA synchronization due to certificate checksum mismatch.

811663

Inter-domain information leakage.

823671

SSO on mobile devices does not work after upgrading to v7.0.3.

792952

Unauthenticated queries may expose some unnecessary information.

805346

Quarantine report URL should be able to use its own configured port.

812907

Admin users have access only to the main domain but not to the associated domains.

707515

The secondary unit in an active-passive HA mode cannot recover from out-of-sync mode with checksum mismatch.

798144

Problem with system time when using GMT time zone.

799920

Admin profile with permission to Traffic Capture cannot sniffer via CLI.

801861

High memory usage over time.

Log and Report

Bug ID

Description

825004

In some cases, logs show incorrect relay IP addresses.

797621

Log search fails due to timeout.

Admin GUI and Webmail

Bug ID

Description

804163

Incorrect translation to Japanese of "Recipients per Period" and "Recipients per Message".

813612

PKI authentication with customized webmail login page not working.

809363

Exporting the contact group to a .csv file exports all the address book contacts.

830963

Sorting by access level does not work under System > Administrator > Administrator.

810461

The Compose Mail icon is not displayed when the mail is in the Encrypted Email folder.

804855

Admin login page is accessible from any IP address when trusted IP is set.

803220

FortiMail product icon is not shown on webmail GUI in server mode.

799549

Webmail GUI is blocked when composing an email message and trying to edit a link.

804982

On the log search page, the "Load Previous Setting" button does not repopulate the Client IP field.

794341

IBE notification for new user registration and activation is in English while the language is set to German.

801157

System time section shows vertical format in Japanese GUI.

Common Vulnerabilities and Exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

Description

790809

CWE-352: Cross-Site Request Forgery (CSRF)

773386

CWE-610: Externally Controlled Reference to a Resource in Another Sphere

826878

CVE-2022-31129: JavaScript library upgrade

793937

CWE-284: Improper Access Control

792100

CVE-2022-0778: OpenSSL library upgrade

824889

Curl library upgrade:

CVE-2022-22576

CVE-2022-27782

CVE-2022-30115

CVE-2022-27781

CVE-2022-27780

CVE-2022-27779

CVE-2022-27776

CVE-2022-27775

CVE-2022-27774

Resolved Issues

Resolved Issues

The resolved issues listed below do not list every bug that has been corrected with this release. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Antispam/Antivirus

Bug ID

Description

797391

URL click protection does not work correctly with URL rewrites not occurring within email.

803094

Content filter with wildcard patterns cannot detect Thai language.

815586

FortiSandbox category timed out, with action taken before timeout was triggered.

827697

Email address starting with "."(dot) is not rejected.

833273

Email attachment from MS365 is not delivered when CDR is triggered.

813613

When using the "Rewrite recipient email address" action, irrelevant headers are removed.

811579

The block list is only applied to the first recipient.

822265

DKIM check fails incorrectly for valid DKIM key.

818908

URL rewrite may not work properly in some cases.

824015

SPF check failed due to DNS look up limit reached.

824290

In some cases, a disclaimer may be duplicated when replying to an email thread.

810260

Blocklist does not work when the sending email address is between quotation marks.

826087

FortiMail detects .jtd files as Microsoft files.

791736

In some cases, the WebFilter can only detect part of the URL.

813318

Client names cannot be blocked using reverse DNS patterns.

794309

Final action of DMARC is not applied.

792507

Quarantine report does not work for associate domains when using domain recipient policy with regular expressions.

834296

Released email from system quarantine fails DKIM check at Outlook.com.

834467

In some cases, email get corrupted when using CDR.

Mail delivery

Bug ID

Description

819657

The "for" clause in the Received Header contains another recipient address when Spam outbreak is triggered.

823544

Email delivery is delayed with too many FortiSandbox mail queues.

821755

Releasing email from on demand system quarantine is delivered without the original email as attachment.

769015

ACL safe/safe&relay does not work properly on FortiMail 200F model.

732598

In some cases, email delivery may be delayed after Microsoft 365 real-time scanning.

System

Bug ID

Description

794074

SSO administrator login not working when post-login-banner is enabled.

807614

DKIM keys from some domains are missing.

799789

Invalid DKIM signature issue.

797330

Disclaimers are added to email in the incorrect place.

815286

SPF check receives PERM_ERROR message when sender record includes macros and IPv6 client IP addresses.

692481

Custom email template variable %%ORIG_FROM%% not working as intended.

811593

Attachment scan action with two file filters stops with replace action.

811446

Scheduled Scan set to "daily" is defaulting to 24-hour window instead of the shorter time period configured.

810685

In server mode, LDAP users are unable to delete user mailbox data.

819717

Disclaimer not being added to all emails.

817272

Issue with HA synchronization due to certificate checksum mismatch.

811663

Inter-domain information leakage.

823671

SSO on mobile devices does not work after upgrading to v7.0.3.

792952

Unauthenticated queries may expose some unnecessary information.

805346

Quarantine report URL should be able to use its own configured port.

812907

Admin users have access only to the main domain but not to the associated domains.

707515

The secondary unit in an active-passive HA mode cannot recover from out-of-sync mode with checksum mismatch.

798144

Problem with system time when using GMT time zone.

799920

Admin profile with permission to Traffic Capture cannot sniffer via CLI.

801861

High memory usage over time.

Log and Report

Bug ID

Description

825004

In some cases, logs show incorrect relay IP addresses.

797621

Log search fails due to timeout.

Admin GUI and Webmail

Bug ID

Description

804163

Incorrect translation to Japanese of "Recipients per Period" and "Recipients per Message".

813612

PKI authentication with customized webmail login page not working.

809363

Exporting the contact group to a .csv file exports all the address book contacts.

830963

Sorting by access level does not work under System > Administrator > Administrator.

810461

The Compose Mail icon is not displayed when the mail is in the Encrypted Email folder.

804855

Admin login page is accessible from any IP address when trusted IP is set.

803220

FortiMail product icon is not shown on webmail GUI in server mode.

799549

Webmail GUI is blocked when composing an email message and trying to edit a link.

804982

On the log search page, the "Load Previous Setting" button does not repopulate the Client IP field.

794341

IBE notification for new user registration and activation is in English while the language is set to German.

801157

System time section shows vertical format in Japanese GUI.

Common Vulnerabilities and Exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

Description

790809

CWE-352: Cross-Site Request Forgery (CSRF)

773386

CWE-610: Externally Controlled Reference to a Resource in Another Sphere

826878

CVE-2022-31129: JavaScript library upgrade

793937

CWE-284: Improper Access Control

792100

CVE-2022-0778: OpenSSL library upgrade

824889

Curl library upgrade:

CVE-2022-22576

CVE-2022-27782

CVE-2022-30115

CVE-2022-27781

CVE-2022-27780

CVE-2022-27779

CVE-2022-27776

CVE-2022-27775

CVE-2022-27774