PT-2026-73207 · Orange View Limited · Dualsafe Password Manager & Digital Vault Extension

·

CVE-2026-19992

·

Published

2026-08-17

·

Updated

2026-08-17

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Orange View Limited DualSafe Password Manager & Digital Vault Extension versions prior to 1.4.36
Description A flaw exists in the postMessage-based Bridge component of the extension on Chrome. A remote attacker can perform a manipulation of an unknown function within this component to cause information disclosure. This attack is characterized by high complexity and is considered difficult to exploit.
Recommendations Update the extension to a version newer than 1.4.35.

Exploit

Fix

Information Disclosure

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-19992

Affected Products

Dualsafe Password Manager & Digital Vault Extension