Improper Input Validation in CyberArk Secure Web Sessions Extension for Chrome and Edge
CVE-2025-13762

4.8MEDIUM

Key Information:

Vendor

Cyberark

Vendor
CVE Published:
27 November 2025

What is CVE-2025-13762?

An improper input validation vulnerability in the CyberArk Secure Web Sessions Extension for both Chrome and Edge browsers has been identified. This flaw could enable attackers to cause a Denial of Service (DoS) when initiating new Secure Web Sessions. Users are advised to update to the latest version to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

CyberArk Secure Web Sessions Extension Chrome 0 < 2.2.30305

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Benjamin Lim
Goh Jing Loon
Sean Seah
Tan Inn Fung
Zhang Bosen
.