PT-2025-48223 · Cyberark · Cyberark Secure Web Sessions Extension

Benjamen Lim

+3

·

Published

2025-11-27

·

Updated

2025-11-27

·

CVE-2025-13762

CVSS v4.0

4.8

Medium

VectorAV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:A/AU:Y
Name of the Vulnerable Software and Affected Versions CyberArk Secure Web Sessions Extension versions prior to 2.2.30305
Description A flaw exists in CyberArk Secure Web Sessions Extension on Chrome and Edge that could lead to a denial of service when initiating new Secure Web Sessions (SWS) sessions. The issue is due to improper input validation.
Recommendations Update CyberArk Secure Web Sessions Extension to version 2.2.30305 or later.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-13762

Affected Products

Cyberark Secure Web Sessions Extension