CVE 4.8 MEDIUM

Client-Side Denial of Service Condition in SWS Extension prior to version 2.2.30305_CVE-2025-13762

4.8 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:A/AU:Y

Description

Improper Input Validation vulnerability in CyberArk CyberArk Secure Web Sessions Extension on Chrome, Edge allows Denial of Service when trying to starting new SWS sessions.This issue affects CyberArk Secure Web Sessions Extension: before 2.2.30305.

Basic Information

ID CVE-2025-13762
Source GovTech CSG
Published Nov 27, 2025 at 02:50

Affected Product

Vendor CyberArk
Product CyberArk Secure Web Sessions Extension
Affected Versions CyberArk CyberArk Secure Web Sessions Extension 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.