Critical Vulnerability in Fortinet FortiMail Actively Exploited for Arbitrary File Writes
Fortinet FortiMail is affected by a critical vulnerability (CVE-2026-104286) that is under active exploitation. The flaw, scoring 9.8 on CVSS v3.1, allows unauthenticated attackers to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests due to a path traversal issue. Users are advised to implement workarounds and update to the latest versions.
Want more?
Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.
Open NewsSnap.ai