MobbleOpen in Mobble ⇢
Technology · Cybersecurity · published 2026-10-02 · via The Hacker News

Fortinet Email Gateway Vulnerability Under Active Attack, Added to Federal Tracking List

Image via The Hacker News
Image via The Hacker News

A critical vulnerability in Fortinet's FortiMail platform has been added to the U.S. Cybersecurity and Infrastructure Security Agency's catalog of known exploited vulnerabilities following confirmed active attacks. The flaw, rated 9.8 on the severity scale, permits attackers without credentials to write arbitrary files to affected systems. Fortinet users are urged to apply patches as exploitation is actively occurring in the wild.

Expanded Detail

The Fortinet FortiMail platform, widely deployed for email security across organizations, contains a severe flaw that attackers can exploit without needing valid login credentials. By writing arbitrary files to vulnerable systems, threat actors can potentially compromise email infrastructure that many businesses rely on for secure communications. The addition to the federal government's tracking list signals that exploitation attempts are already underway in real-world environments, making immediate remediation a priority for affected organizations.

Context

Organizations using FortiMail systems could face significant disruption if this vulnerability remains unpatched, potentially allowing attackers to access sensitive email data or use compromised servers as footholds for broader network intrusions. The active exploitation underway may particularly impact enterprises and critical infrastructure sectors that depend heavily on email for operations. Rapid patching by system administrators could substantially reduce these risks, though organizations with limited IT resources or legacy systems may face delays in securing their environments.

Expanded detail and Context are AI-generated analysis; the linked article remains the authoritative source.
Read the full article at The Hacker News →
Related stories
Critical Cisco Network Appliance Flaw Now Listed as Actively Exploited Vulnerability · Cybersecurity
Kiteworks Fixes Critical Code Injection Flaw in Email Security Gateway · Cybersecurity
Fifth Cisco SD-WAN Vulnerability Actively Exploited by Attackers This Year · Cybersecurity
Bitget Exchange Breach Traced to Third-Party Security Software Vulnerability Costing $387.5 Million · Cybersecurity
Also covered by: BleepingComputer
This summary is Al-enhanced to contain extended analysis and broader social context. The original is {NAME); the linked article is the authoritative source. Original headline: “Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes.” Browse more stories.