Medium severity6.5NVD Advisory· Published Apr 22, 2026· Updated May 12, 2026
CVE-2026-31192
CVE-2026-31192
Description
Insufficient validation of Chrome extension identifiers in Raindrop.io Bookmark Manager Web App 5.6.76.0 allows attackers to obtain sensitive user data via a crafted request.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/incoggeek/vulnerability-research/tree/master/CVE-2026-31192nvdThird Party Advisory
- developer.mozilla.org/en-US/docs/Web/HTTP/Guides/CORSnvdTechnical Description
- developer.mozilla.org/en-US/docs/Web/HTTP/Reference/Headers/OriginnvdTechnical Description
- support.google.com/chrome_webstore/answer/2664769nvdNot Applicable
News mentions
0No linked articles in our index yet.