CVE-2026-15580
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Aug 21, 2026
Vendor
unknown
Description
vault token disclosure via unvalidated postMessage vulnerability in N-able PassPortal allows Authentication Abuse. This issue affects the PassPortal browser extension: before 3.49.6.