CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Chrome, Firefox. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
Original NVD Description
Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation flaw within its internal web-page verification routines. If an authenticated user navigates to a specially crafted webpage, this interaction could potentially allow a remote attacker to trigger unauthorized application interaction or execution parameters within the context of that authenticated browser session. CyberArk Security Bulletin: CA26-21
Related CVEs
Other vulnerabilities affecting the same vendor(s)