FortiMail zero-day (CVE-2026-104286) exploited in the wild before a patch is available
Fortinet disclosed CVE-2026-104286, a critical FortiMail flaw exploited in the wild to write arbitrary files to email gateways, prompting an emergency CISA patching order.
- Victim
- Fortinet FortiMail