CISA adds Fortinet FortiMail path traversal CVE-2026-104286 to the Known Exploited Vulnerabilities Catalog

A federal catalog entry on evidence of active exploitation puts FortiMail on the priority queue that Binding Operational Directive 26-04 imposes on civilian agencies and that CISA asks every other organization to follow. IN BRIEF: On October 1, 2026, the…
