Description

Proctorio Chrome Extension is a browser extension used for online proctoring. The extension contains multiple window.addEventListener('message', ...) handlers that do not properly validate the origin of incoming messages. Specifically, an internal messaging bridge processes messages based solely on the presence of a fromWebsite property without verifying the event.origin attribute.

INFO

Published Date :

2026-02-11T14:49:44.991Z

Last Modified :

2026-02-11T21:19:08.551Z

Source :

Hackrate
AFFECTED PRODUCTS

The following products are affected by CVE-2026-2345 vulnerability.

Vendors Products
Proctorio
  • Secure Exam Proctor Extension
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-2345.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact