Home / Oct 04, 2026 / Story
0
#1 SecurityWeek general October 02, 2026 at 08:07 UTC

Exploited Fortinet FortiMail Zero-Day Calls for Urgent Action

By Ionut Arghire

AI Summary

CVE-2026-104286, a critical-severity path traversal zero-day in Fortinet FortiMail, is being actively exploited in the wild, allowing attackers to write arbitrary files to affected systems. Security teams running FortiMail should treat this as a priority patch given Fortinet's history as a high-value target for nation-state actors. Urgent action is required as exploitation is confirmed prior to widespread patching.

Relevance score: 88.0/100

# More from October 04