Wire · regulatory
FortiMail Zero-Day Rated 9.8 Already Exploited, Patches Still Pending
◆ Sectors
◆ Source
◆ Verified
Fusion42 · 3 October 2026 · Fusion42 review
A critical zero-day vulnerability in Fortinet's FortiMail, rated 9.8 CVSS, is actively being exploited while official patches have not yet been released. A temporary workaround is available to mitigate risks until a formal fix arrives.
This Wire brief sits within Fusion42's coverage of Cybersecurity and Security Infrastructure, and 2 sources have reported it between 2 Oct 2026 and 3 Oct 2026.
◆ ◆ The Wire takeaway
Your security tools are vulnerable to active attack before patches arrive. Urgently deploy FortiMail workarounds this week to protect customer email infrastructure from exploitation.
◆ Coverage
2 sources · first reported 2 Oct 2026 · latest 3 Oct 2026
◆ Related on Wire
◆ Topics