A vulnerability described as problematic has been identified in Ping Identity PingFederate up to 13.0. Affected by this issue is some unknown functionality of the component Administrative Console. Such manipulation leads to cross-site request forgery.

This vulnerability is listed as CVE-2025-32736. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.