Fortinet has disclosed a critical FortiMail zero-day vulnerability, CVE-2026-104286, that is being actively exploited to write arbitrary files and execute unauthorized code or commands on affected devices. CISA has added the flaw to its Known Exploited Vulnerability catalog, while Fortinet advises workarounds and says patches are coming for affected FortiMail versions. #Fortinet #FortiMail #CVE-2026-104286 #CISA
Keypoints
- CVE-2026-104286 is a critical FortiMail flaw with a CVSS score of 9.8.
- The issue is being actively exploited in zero-day attacks.
- An attacker can use crafted HTTP or HTTPS requests to write arbitrary files.
- Affected versions include FortiMail 7.2, 7.4, 7.6, and 8.0 releases.
- Fortinet recommends disabling IBE support or restricting management access until patches are available.