Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Zero-Day Flaw in FortiMail Actively Exploited

Critical Zero-Day Flaw in FortiMail Actively Exploited

Posted on October 2, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) recently added a grave security flaw affecting Fortinet’s FortiMail to its Known Exploited Vulnerabilities (KEV) list. This decision follows reports indicating the vulnerability is currently being exploited in the wild.

Details of the FortiMail Vulnerability

Identified as CVE-2026-104286 with a CVSS score of 9.8, this flaw permits unauthenticated attackers to execute arbitrary file writes on the affected systems. Fortinet’s advisory highlights that the vulnerability arises from a path traversal issue and improper neutralization of NULL bytes, which could be exploited via crafted HTTP or HTTPS requests.

The affected FortiMail versions include 8.0.0 to 8.0.1, 7.6.0 to 7.6.6, and 7.4.0 to 7.4.8. Fortinet advises upgrading to versions 8.0.2, 7.6.7, and 7.4.9 or above when they become available.

Immediate Recommendations and Workarounds

To mitigate the risk until patches are released, Fortinet recommends disabling the IBE feature and limiting access to the FortiMail management interface to trusted networks. The specific CLI command to disable IBE is provided in their guidance.

Fortinet credits Gwendal Guégniaud from their Product Security team for identifying the vulnerability. They have also shared indicators of compromise, including specific IP addresses and modified files, to assist in detection and response efforts.

Broader Security Concerns

Federal Civilian Executive Branch (FCEB) agencies have been urged to apply recommended patches or workarounds by October 4, 2026. This urgency is underscored by the concurrent exploitation of other vulnerabilities in products from Check Point, Arista, F5, Cisco, and Citrix, as noted in various security advisories.

The rapid escalation of these exploits highlights the critical need for organizations to prioritize patch management and implement robust cybersecurity defenses.

As the cybersecurity landscape continues to evolve, staying informed and proactive is essential to safeguarding enterprise systems from emerging threats.

The Hacker News Tags:CISA, CVE-2026-104286, Cybersecurity, enterprise security, FortiMail, Fortinet, path traversal, security flaw, Vulnerability, zero-day

Post navigation

Previous Post: Tech Company Owner Charged with Smuggling GPUs to China
Next Post: Critical Apache Server Security Update Fixes Code Execution Risks

Related Posts

Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files The Hacker News
Chrome 0-Day, AI Hacking Tools, DDR5 Bit-Flips, npm Worm & More Chrome 0-Day, AI Hacking Tools, DDR5 Bit-Flips, npm Worm & More The Hacker News
Gitea Vulnerability Allows File Access Without Authentication Gitea Vulnerability Allows File Access Without Authentication The Hacker News
LiteLLM Security Flaw Exploited Rapidly Post-Disclosure LiteLLM Security Flaw Exploited Rapidly Post-Disclosure The Hacker News
Think Your IdP or CASB Covers Shadow IT? These 5 Risks Prove Otherwise Think Your IdP or CASB Covers Shadow IT? These 5 Risks Prove Otherwise The Hacker News
Critical Cisco Vulnerability in Unified CM Grants Root Access via Static Credentials Critical Cisco Vulnerability in Unified CM Grants Root Access via Static Credentials The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical Apache Server Security Update Fixes Code Execution Risks
  • Critical Zero-Day Flaw in FortiMail Actively Exploited
  • Tech Company Owner Charged with Smuggling GPUs to China
  • Fortinet FortiMail Vulnerability Puts Email Systems at Risk
  • Node.js ImageResponse Flaw Risks Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical Apache Server Security Update Fixes Code Execution Risks
  • Critical Zero-Day Flaw in FortiMail Actively Exploited
  • Tech Company Owner Charged with Smuggling GPUs to China
  • Fortinet FortiMail Vulnerability Puts Email Systems at Risk
  • Node.js ImageResponse Flaw Risks Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark