Source: Ministry of education information & communication security contingency platform
"" "" ""
| Publication Number | TACERT-ANA-2026091401090505 | Publication Time | 2026-09-14 13:39:06 |
| Incident Type | ANA-Vulnerability Alert | Discovery Time | 2026-09-14 13:39:06 |
| Impact Level | Low | ||
| [Subject] 【Vulnerability Alert】Fortinet Privileged Access Agent Chrome Extension Contains a Critical Cybersecurity Vulnerability (CVE-2026-84388) |
|||
| [Content]
Forwarded from TWCERTCC Cybersecurity Alert TWCERTCC-200-202609-00000013 Fortinet Privileged Access Agent Chrome Extension contains an Improper Authentication vulnerability (CVE-2026-84388, CVSS: 9.1). If a user visits a malicious website, an unauthenticated remote attacker may be able to control the browser traffic of users proxied through the server. Information Sharing Level: WHITE (the intelligence content is information that may be publicly disclosed) |
|||
| [Affected Platform]
All versions of FortiPAM Chrome Extension 8.0 |
|||
|
[Recommended Actions] Please update to the following version: FortiPAM Chrome Extension version 8.0.1.123 or later |
|||
|
[Reference] |
|||