Sensitive Information Exposure Vulnerability in Affected Software by Vendor
CVE-2025-46382

5.3MEDIUM

Key Information:

Vendor

Cyberark

Status
Vendor
CVE Published:
20 July 2025

What is CVE-2025-46382?

This vulnerability allows unauthorized actors to access sensitive information due to improper security controls within the affected software, leading to potential data breaches. Organizations using the affected software should assess their security posture and apply necessary patches or mitigations to safeguard against unauthorized exposure of critical data.

Affected Version(s)

IDP latest

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Harel Bashiri
.
CVE-2025-46382 : Sensitive Information Exposure Vulnerability in Affected Software by Vendor