OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-84388

CRITICAL · CVSS 9.6 EPSS 0.38%

Source: NVD + CISA KEV + EPSS · Published 2026-09-22 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The Fortinet FortiPAM Chrome Extension versions 7.4 and 8.0 are vulnerable due to improper restrictions on rendered UI layers or frames, potentially allowing attackers to disclose sensitive information through remote unauthenticated access. Organizations using these extensions should prioritize patching this critical vulnerability to mitigate the risk of data exposure. Immediate action is recommended for all users of the affected products to safeguard against potential exploitation.

CVE
CVE-2026-84388
Severity
CRITICAL
CVSS
9.6
EPSS
0.38%
Fortinet Chrome

Original NVD Description

A improper restriction of rendered ui layers or frames vulnerability in Fortinet FortiPAM Chrome Extension 8.0 all versions, FortiPAM Chrome Extension 7.4 all versions may allow attacker to information disclosure via remote unauthenticated attack