fortinet
Every record this desk has filed under fortinet, newest first, each with the number of sources it can still show you.
CISA adds a FortiMail path-traversal flaw and two Zammad flaws to its exploited-vulnerabilities catalog, with federal deadlines October 4 and 5
CISA's Known Exploited Vulnerabilities catalog, updated October 2 to 1,733 entries, added a critical FortiMail path-traversal flaw (CVE-2026-104286, CVSS 9.8, added October 1, due October 4), plus two Zammad flaws added October 2, due October 5: a session-fixation bug (CVE-2026-102489), fixed in Zammad 7.2.0, and an improper-privilege-management bug (CVE-2026-102490) whose reported scope Zammad says it cannot verify. CISA marks ransomware use Unknown for all three. Fortinet lists its fixed builds as upcoming, so its advisory urges a workaround.
Also filed undercybersecurityvulnerabilitieszammadfederal-agencies
A record appears here because it carries fortinet in its own frontmatter. If a record you expected is missing, it was filed under a different subject — the full list is on the topics index.