CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97155

MEDIUMCVSS 6.5NVD feed

Published 24 September 2026 · tracked since 25 September 2026

Description

Fabasoft Folio Client before 2026, a locally installed component that communicates with the Fabasoft browser extension via web messaging, does not restrict which web origins may invoke its functions by default. The registry value VALIDDOMAINS, which limits permitted origins, was optional and empty b

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-97155 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97155

MEDIUMCVSS 6.5NVD feed

Published 24 September 2026 · tracked since 25 September 2026

Description

Fabasoft Folio Client before 2026, a locally installed component that communicates with the Fabasoft browser extension via web messaging, does not restrict which web origins may invoke its functions by default. The registry value VALIDDOMAINS, which limits permitted origins, was optional and empty b

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]