#1
SecurityWeek
general
October 02, 2026 at 08:07 UTC
Exploited Fortinet FortiMail Zero-Day Calls for Urgent Action
By Ionut Arghire
AI Summary
CVE-2026-104286, a critical-severity path traversal zero-day in Fortinet FortiMail, is being actively exploited in the wild, allowing attackers to write arbitrary files to affected systems. Security teams running FortiMail should treat this as a priority patch given Fortinet's history as a high-value target for nation-state actors. Urgent action is required as exploitation is confirmed prior to widespread patching.
Relevance score: 88.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →