CVE-2026-84388
critical · 9.6A improper restriction of rendered ui layers or frames vulnerability in Fortinet FortiPAM Chrome Extension 8.0 all versions, FortiPAM Chrome Extension 7.4 all versions may allow attacker to information disclosure via remote unauthenticated attack
9.6
CVSS
0.4%
EPSS (exploit prob.)
32nd
EPSS percentile
2026-09-22
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L
Weaknesses
CWE-1021
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2026-84388