Fortinet FortiMail path traversal exploited (CVE-2026-104286)
CISA says CVE-2026-104286, a critical FortiMail flaw allowing unauthenticated file writes, is exploited. See affected versions, due date and steps to take.
CISA says CVE-2026-104286, a critical FortiMail flaw allowing unauthenticated file writes, is exploited. See affected versions, due date and steps to take.
CISA says the Zammad flaw CVE-2026-102489 is exploited and can give code execution. Check your version, apply vendor fixes and review sessions by 5 October.
CISA says CVE-2026-102490 in Zammad, which lets the local zammad user become root, is exploited. Remediation is due 5 October 2026.
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a severe warning, officially adding a critical vulnerability affecting TrueConf software to its Known Exploited Vulnerabilities (KEV) catalog. This alarming development underscores the immediate need for defensive action across federal agencies and private organizations utilizing TrueConf. Tracked as CVE-2026-3502, this security flaw is currently facing active…
A critical security flaw in F5’s BIG-IP Access Policy Manager (APM) is currently under active exploitation, leaving thousands of enterprise networks at risk. This vulnerability, officially tracked as CVE-2025-53521, has sparked urgent warnings across the cybersecurity community after its impact was upgraded from a standard Denial-of-Service (DoS) to a severe Remote Code Execution (RCE) flaw….
End of content
End of content