CVE-2026-84388
CriticalPublished
A improper restriction of rendered ui layers or frames vulnerability in Fortinet FortiPAM Chrome Extension 8.0 all versions, FortiPAM Chrome Extension 7.4...
- Published
- Sep 22, 2026
- Updated
- Sep 22, 2026
- Assigning CNA
- fortinet
- Evidence observed
- Sep 22, 2026
Primary CVSS
9.1/ 10Critical
cvelist · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L/E:P/RL:O/RC:CSummary
A improper restriction of rendered ui layers or frames vulnerability in Fortinet FortiPAM Chrome Extension 8.0 all versions, FortiPAM Chrome Extension 7.4 all versions may allow attacker to information disclosure via remote unauthenticated attack
Sources
1Improper Restriction of Rendered UI Layers or Frames (CWE-1021)
Responsible use
Use vulnerability information only on systems you own or are authorized to test. Kitploit links to public research metadata and does not store exploit code or malicious payloads.