The Register
Fortinet sounds the alarm over actively exploited FortiMail zero-day
Fortinet disclosed a critical zero-day vulnerability in FortiMail email security platform being actively exploited. The CVE-2026-104286 flaw allows unauthenticated attackers to write files to vulnerable systems via path traversal and improper null character handling, affecting multiple FortiMail versions.
AI summary · generated with Claude