CISA Adds Critical Fortinet FortiMail Zero-Day Flaw to Exploited Vulnerabilities List

AI-generated NewsSnap summary based on source reporting.
Published: 2026-10-02
Category: technology
Source: The Hacker News
Original source

The U.S. CISA has included a critical Fortinet FortiMail zero-day vulnerability (CVE-2026-104286) in its Known Exploited Vulnerabilities catalog, urging immediate mitigation due to active exploitation. This path traversal flaw allows unauthenticated attackers to write arbitrary files via crafted HTTP/HTTPS requests. Fortinet recommends disabling the Identity-Based Encryption feature or restricting management interface access until patches are released.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai