---
id: CVE-2025-13762
title: >-
  Improper Input Validation vulnerability in CyberArk CyberArk Secure Web
  Sessions Extension on Chrome, Edge allows Denial of Service when trying to
  starting new SWS sessions.This issue affects CyberArk Secure Web Sessions
  Extension: befor…
summary: >-
  Improper Input Validation vulnerability in CyberArk CyberArk Secure Web
  Sessions Extension on Chrome, Edge allows Denial of Service when trying to
  starting new SWS sessions.This issue affects CyberArk Secure Web Sessions
  Extension: befor…
severity: none
cwe:
  - CWE-20
published: '2025-11-27'
updated: '2026-09-03'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-13762'
references:
  - url: >-
      https://chromewebstore.google.com/detail/cyberark-secure-web-sessi/ohfinlfcbaehgokpmkjcmkgdcbgamgln?hl=en
    label: cve_disclosure@tech.gov.sg
  - url: >-
      https://microsoftedge.microsoft.com/addons/detail/cyberark-secure-web-sessi/gmfjibhpaliafbemoifjjdkmgaknhohb?hl=en-US
    label: cve_disclosure@tech.gov.sg
tags:
  - nvd
epss: 0.00142
epssPercentile: 0.0287
ingestedAt: '2026-09-03T03:55:22.268Z'
---

## Overview

Improper Input Validation vulnerability in CyberArk CyberArk Secure Web Sessions Extension on Chrome, Edge allows Denial of Service when trying to starting new SWS sessions.This issue affects CyberArk Secure Web Sessions Extension: before 2.2.30305.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
