CVE-2026-3106Disclosure(teampass / teampass)

LOWCVSS 5.4 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Blind Cross-Site Scripting (XSS) in Teampass, versions prior to 3.1.5.16, within the password manager login functionality in the 'contraseña' parameter of the login form 'redacted/index.php'. During failed authentication attempts, the application does not properly clean or encode the information entered by the user in the username field. As a result, arbitrary JavaScript code is automatically executed in the administrator's browser when viewing failed login entries, resulting in a blind XSS condition.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • teampass

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • Peaked 1d ago at 3 mentions (2026-03-31); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
teampass

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-31: 3Mentions · 2026-05-20: 1Technical Details · 2026-03-31: 1Technical Details · 2026-05-20: 103-3105-20
Signal classification2 categories
Disclosure
250.0%
General
250.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-313
Disclosure2General1
2026-05-201
General1
Full discourse4 posts
  • malware Owl@malware_owl
    General

    Short Writeup on an ExifTool Arbitrary Command Execution Vulnerability that was reported two months back: CVE-2026-3106 https://securelist.com/exiftool-compromise-mac/119866/

    Post summary

    The article is a brief writeup on CVE-2026-3106, an arbitrary command execution vulnerability in ExifTool, with no details on PoC, exploitation, or patches.

    0501431.1K
    1.1K followersView on X
  • INCIBE-CERT@incibe_cert
    General

    ⚠️ #INCIBEaviso | Múltiples vulnerabilidades en #Teampass #CVE CVE-2026-3106 y CVE-2026-3107 https://www.incibe.es/incibe-cert/alerta-temprana/avisos/multiples-vulnerabilidades-en-teampass #AvisosDeSeguridad #TI #CNA #0day

    Post summary

    The tweet references an INCIBE alert for two CVEs affecting Teampass, but provides no specifics on exploitation, patches, or PoC.

    02050437
    42.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3106 Blind Cross-Site Scripting (XSS) in Teampass, versions prior to 3.1.5.16, within the password manager login functionality in the 'contraseña' parameter of the login for… https://www.cve.org/CVERecord?id=CVE-2026-3106

    Post summary

    CVE‑2026‑3106 is a blind XSS vulnerability in Teampass login, affecting versions prior to 3.1.5.16 through the 'contraseña' parameter.

    00010101
    56.9K followersView on X
  • Autumn Good@autumn_good_35
    Disclosure

    🚨🚨🚨 CVE-2026-3106 CVE-2026-3107 Múltiples vulnerabilidades en Teampass | INCIBE-CERT https://www.incibe.es/incibe-cert/alerta-temprana/avisos/multiples-vulnerabilidades-en-teampass

    Post summary

    INCIBE-CERT has issued an alert about multiple vulnerabilities in Teampass (CVE‑2026‑3106 and CVE‑2026‑3107), but the brief text does not provide details on PoC, exploitation, patches, or technical attributes.

    00000283
    6.7K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appteampassteampass---

Explore more