Known Vulnerabilities for products from Cyberark

Listed below are 18 of the newest known vulnerabilities associated with the vendor "Cyberark".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-45178 json Not Provided 2026-06-11 2026-06-11
CVE-2026-45177 json Not Provided 2026-06-11 2026-06-11
CVE-2026-45176 json Not Provided 2026-06-11 2026-06-13
CVE-2026-45175 json Not Provided 2026-06-11 2026-06-13
CVE-2026-45174 json Not Provided 2026-06-11 2026-06-13
CVE-2026-45173 json Not Provided 2026-06-11 2026-06-12
CVE-2026-45172 json Not Provided 2026-06-11 2026-06-13
CVE-2026-45171 json Not Provided 2026-06-11 2026-06-13
CVE-2026-45170 json Not Provided 2026-06-12 2026-06-23
CVE-2026-45169 json Not Provided 2026-06-12 2026-06-12
CVE-2022-22700 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.3 - MEDIUM 2022-03-03 2022-03-09
CVE-2021-44049 json CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privilege... 7.8 - HIGH 2022-01-15 2022-07-12
CVE-2021-37151 json CyberArk Identity 21.5.131, when handling an invalid authentication attempt, sometimes reveals whether the username is valid.... 5.3 - MEDIUM 2021-09-01 2023-11-07
CVE-2021-31798 json The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under ce... 4.4 - MEDIUM 2021-09-02 2022-07-12
CVE-2021-31797 json The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race cond... 5.1 - MEDIUM 2021-09-02 2023-08-08
CVE-2021-31796 json An inadequate encryption vulnerability discovered in CyberArk Credential Provider before 12.1 may lead to Information Disclos... 7.5 - HIGH 2021-09-02 2022-07-12
CVE-2020-25738 json CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by in... 5.5 - MEDIUM 2020-11-27 2020-12-04
CVE-2020-25374 json CyberArk Privileged Session Manager (PSM) 10.9.0.15 allows attackers to discover internal pathnames by reading an error popup... 2.6 - LOW 2020-10-28 2023-11-07
CVE-2020-4062 json In Conjur OSS Helm Chart before 2.0.0, a recently identified critical vulnerability resulted in the installation of the Conju... 9 - CRITICAL 2020-06-22 2022-09-20
CVE-2019-9627 json A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.7 all... 7 - HIGH 2019-03-08 2022-04-05

Known software with vulnerabilities from Cyberark

Type Vendor Product Version
ApplicationCyberarkConjur Oss Helm Chart0.1.0
ApplicationCyberarkConjur Service Broker-
ApplicationCyberarkEndpoint Privilege Manager-
ApplicationCyberarkEnterprise Password Vault10.6
ApplicationCyberarkPassword Vault10.0
ApplicationCyberarkPrivileged Session Manager10.9.0.15
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report