Fortinet Warns of Actively Exploited Zero-Day in FortiMail Email Appliance
CVE-2026-104286 allows unauthorized code execution on on-premises devices

Key Takeaways
- FortiMail email security appliance critical vulnerability CVE-2026-104286 is actively exploited in zero-day attacks.
- The flaw allows unauthorized code or command execution on affected devices.
- Fortinet has released security updates; customers must apply the latest firmware immediately.
- Successful exploitation could lead to full compromise of the email infrastructure.
Related Security News

Kiteworks and Citrix Face Zero-Day Response Challenges
Reports indicate that Kiteworks instructed customers to power down its data-protection platform during a nine-hour window amid a zero-day incident, while Citrix released a patch without prior public disclosure of active attacks. Both cases underscore the operational difficulties in coordinating zero-day responses and the impact of communication gaps on customer environments.




