---
title: "Fortinet FortiMail — CVE-2026-104286"
description: "A path traversal flaw affects Fortinet FortiMail. Apply the vendor’s patch. It is being actively exploited: patch now."
canonical: https://inyourgeek.com/en/failles-de-securite/2026-10-01-cve-2026-104286
type: faille-de-securite
author: "Sébastien Soulier"
publisher: "InYourGeek"
language: en
datePublished: 2026-10-01
dateModified: 2026-10-01
---
# Fortinet FortiMail — CVE-2026-104286

A path traversal flaw affects Fortinet FortiMail. Apply the vendor’s patch. It is being actively exploited: patch now.

## What to do

Check the vendor advisory for the fixed version. This flaw is being actively exploited: patch now.

| Fact | Value |
| --- | --- |
| Ecosystem | Network appliance |
| Class | Path traversal |
| CVE | CVE-2026-104286 |
| Published on | October 1, 2026 |
| Severity | Critical |

## Sources

- [CISA KEV — CVE-2026-104286](https://www.cisa.gov/known-exploited-vulnerabilities-catalog) — CISA Known Exploited Vulnerabilities
- [NVD — CVE-2026-104286](https://nvd.nist.gov/vuln/detail/CVE-2026-104286) — NVD

---

Equivalent HTML page : https://inyourgeek.com/en/failles-de-securite/2026-10-01-cve-2026-104286
Published by InYourGeek — https://inyourgeek.com/en/a-propos
Method and safeguards : https://inyourgeek.com/en/methode
Full register : https://inyourgeek.com/en/failles-de-securite
