PT-2026-60547 · Frogman · Frogman

CVE-2026-46514

·

Published

2026-07-16

·

Updated

2026-07-16

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Frogman versions prior to 1.6.2
Description Frogman provides headless PBX control through MCP and HTTP API. The fm reset password() function in Tools/ResetPassword.php and the fm add extension() function in Tools/AddExtension.php return plaintext passwords and secrets, respectively. These responses are JSON-encoded into the oc audit log.detail field via the auditOutcome variable in Frogman.class.php. Consequently, any caller with PERM READ permissions and access to the fm audit search endpoint can recover these stored credentials.
Recommendations Update to version 1.6.2.

Exploit

Fix

Insertion into Log File

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-46514
GHSA-3P65-2PRR-CFVF

Affected Products

Frogman