← Back to the feed

~/article/critical-fortimail-zero-day-exploited-in-the-wild-cve-2026-104286-1qfk9s
criticalSource: Help Net Security

Critical FortiMail zero-day exploited in the wild (CVE-2026-104286)

Fortinet is warning customers that attackers are exploiting a zero-day vulnerability (CVE-2026-104286) in FortiMail, its email security gateway. Fortinet says the flaw has been reported to be exploited in the wild, and urges customers to apply the workaround it shared until fixes are available. About CVE-2026-104286 “An Improper Limitation of a Pathname to a Restricted Directory (‘Path…

Read at the source

Summary written for cymesh.dev. The full article lives at Help Net Security.

Referenced CVEs

~/cymesh.net

This is what cymesh.net is for

Certificate and hostname problems are the ones you find out about from your users. cymesh.net finds them first.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks

Related

~/related/critical-fortimail-zero-day-exploited-in-the-wild-cve-2026-104286-1qfk9s