After CVE-2026-104286: A Compromise Assessment Plan for FortiMail
Fortinet FortiMail is affected by CVE-2026-104286, a CVSS 9.8 path traversal allowing unauthenticated file writes via crafted HTTP/HTTPS requests. Fortinet reports exploitation in the wild, and CISA added the flaw to its Known Exploited Vulnerabilities catalog on October 1, 2026.
- CVSS 9.8: unauthenticated file writes via HTTP/HTTPS requests
- CISA added CVE-2026-104286 to KEV on October 1, 2026
- The 7.0 branch has no named fix — migrate to a fixed build
- Confirmed compromise requires rebuild from a trusted image
Read next
Security