PT-2026-71418 · Forcepoint · Forcepoint One Endpoint Safariextension
CVSS v4.0
4.8
Medium
| Vector | AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
Forcepoint One Endpoint SafariExtension versions prior to 26.04.5758
Description
A flaw in the F1E Mac OS allows a standard user without administrative privileges to disable the SafariExtension, which results in the bypass of Data Loss Prevention (DLP) protections. DLP is a set of tools and processes used to ensure that sensitive data is not lost, misused, or accessed by unauthorized users.
Recommendations
Update to version 26.04.5758 or later.
Fix
Improper Check for Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Forcepoint One Endpoint Safariextension