PassPortal
by N-able
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-47131 | Hig | 0.49 | 7.5 | 0.01 | Feb 8, 2024 | The N-able PassPortal extension before 3.29.2 for Chrome inserts sensitive information into a log file. | ||
| CVE-2026-15580 | Med | 0.45 | — | 0.00 | Aug 21, 2026 | vault token disclosure via unvalidated postMessage vulnerability in N-able PassPortal allows Authentication Abuse. This issue affects the PassPortal browser extension: before 3.49.6. |
- risk 0.49cvss 7.5epss 0.01
The N-able PassPortal extension before 3.29.2 for Chrome inserts sensitive information into a log file.
- risk 0.45cvss —epss 0.00
vault token disclosure via unvalidated postMessage vulnerability in N-able PassPortal allows Authentication Abuse. This issue affects the PassPortal browser extension: before 3.49.6.