Vulnerability index

Browse CVEs

51 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Sensitive Information in LogsCWE-532 × clear
Storage Scale MEDIUM 5.5
CVE-2026-19483

IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 Secrets may be disclosed in log files in IBM Storage Scale Management GUI The …

No fix yet
Fix from $4,000 2026-08-13
Db2 MEDIUM 5.5
CVE-2026-18097

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to ob…

No fix yet
Fix from $4,000 2026-08-12
App Connect Enterprise HIGH 7.5
CVE-2026-12947

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive information in log files that coul…

Fix: 12.0.12.28 / 13.0.8.0+
Fix from $1,950 2026-07-30
Websphere Application Server HIGH 7.5
CVE-2026-14528

IBM WebSphere Application Server 9.0, and 8.5 traditional could allow a remote attacker to obtain sensitive information.

Fix: 8.5.5.31 / 9.0.5.29+
Fix from $1,950 2026-07-28
Devops Deploy MEDIUM 5.5
CVE-2026-12086

IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.23, and 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2…

Fix: 7.2.3.24 / 7.3.2.19+
Fix from $1,600 2026-06-30
App Connect Enterprise MEDIUM 5.5
CVE-2026-5515

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.0 stores potentially sensitive information in log files that could be read by a local user.

Fix: 13.0.7.1+
Fix from $1,600 2026-05-27
Db2 MEDIUM 5.5
CVE-2025-13755

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes DB2 Connect Server) stores potentially sensitive infor…

Fix: after 12.1.4
Fix from $1,600 2026-05-26
Tivoli Netcool\/impact MEDIUM 5.5
CVE-2026-4788

IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.

Fix: 7.1.0.38+
Fix from $1,600 2026-04-08
Infosphere Information Server MEDIUM 5.3
CVE-2026-1265

IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to writing of sensitive Information in a log file.

Fix: after 11.7.1.6
Fix from $1,600 2026-03-03
Storage Defender Resiliency Service MEDIUM 6.5
CVE-2025-64650

IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.18 could disclose sensitive user credentials in log files.

Fix: after 2.0.18
Fix from $1,600 2025-12-08
Watsonx.data MEDIUM 5.5
CVE-2025-36144

IBM Lakehouse (watsonx.data 2.2) stores potentially sensitive information in log files that could be read by a local user.

Mitigation only
Fix from $1,600 2025-09-27
App Connect Enterprise Certified Containers Operands MEDIUM 5.5
CVE-2025-36133

IBM App Connect Enterprise Certified Container CD: 9.2.0 through 11.6.0, 12.1.0 through 12.14.0, and 12.0 LTS: 12.0.0 through 12.0.14stores potential…

Fix: 12.15.0+
Fix from $1,600 2025-09-01
Qradar Security Information And Event Manager MEDIUM 6.2
CVE-2025-36050

IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 stores potentially sensitive information in log files that could be read by a local user.

Mitigation only
Fix from $1,600 2025-06-19
Infosphere Information Server HIGH 7.5
CVE-2024-7577

IBM InfoSphere Information Server 11.7 could disclose sensitive user credentials from log files during new installation of the product.

Fix: 11.7.1+
Fix from $1,950 2025-03-29
Devops Deploy MEDIUM 5.5
CVE-2025-1998

IBM UrbanCode Deploy (UCD) through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.0 / IBM DevOps Deploy 8.0 through 8.0.1.4 and 8.1 through 8.…

Fix: 7.1.2.22 / 7.2.3.15+
Fix from $1,600 2025-03-27
Cloud Pak System MEDIUM 6.5
CVE-2023-38271

IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could allow…

Mitigation only
Fix from $1,600 2025-01-25
Urbancode Deploy MEDIUM 5.5
CVE-2024-45091

IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensitive information in log files…

Fix: 7.0.5.25 / 7.1.2.21+
Fix from $1,600 2025-01-21
Db2 MEDIUM 5.5
CVE-2024-40679

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an information disclosure vulnerability as sensitive informat…

Mitigation only
Fix from $1,600 2025-01-08
Business Automation Workflow MEDIUM 6.5
CVE-2024-38321

IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2, and 24.0.0 stores potentially sensitive information in log files under certain situations th…

Fix: after 22.0.2
Fix from $1,600 2024-08-03
Security Verify Access MEDIUM 5.5
CVE-2023-30430

IBM Security Verify Access 10.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from trace logs. IBM X-Force ID: 252183.

Fix: after 10.0.7.1
Fix from $1,600 2024-06-27
Watson Cp4d Data Stores MEDIUM 5.5
CVE-2023-40694

IBM Watson CP4D Data Stores 4.0.0 through 4.8.4 stores potentially sensitive information in log files that could be read by a local user. IBM X-Forc…

Fix: 4.8.5+
Fix from $1,600 2024-05-07
Aspera Faspex MEDIUM 5.5
CVE-2023-22869

IBM Aspera Faspex 5.0.0 through 5.0.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 244…

Fix: 5.0.8+
Fix from $1,600 2024-04-19
Db2 MEDIUM 5.5
CVE-2024-25030

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 stores potentially sensitive information in log files that could be read by a …

Mitigation only
Fix from $1,600 2024-04-03
Infosphere Information Server MEDIUM 5.5
CVE-2024-22352

IBM InfoSphere Information Server 11.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 28…

Mitigation only
Fix from $1,600 2024-03-21
Maximo Mobile For Eam MEDIUM 5.5
CVE-2023-43043

IBM Maximo Application Suite - Maximo Mobile for EAM 8.10 and 8.11 could disclose sensitive information to a local user. IBM X-Force ID: 266875.

Mitigation only
Fix from $1,600 2024-03-13
Cloud Pak For Security MEDIUM 5.5
CVE-2024-22335

IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores potentially sensitive information in lo…

Fix: 1.10.18.0+
Fix from $1,600 2024-02-17
Cloud Pak For Security MEDIUM 5.5
CVE-2024-22336

IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores potentially sensitive information in lo…

Fix: 1.10.18.0+
Fix from $1,600 2024-02-17
Cloud Pak For Security MEDIUM 5.5
CVE-2024-22337

IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores potentially sensitive information in lo…

Fix: 1.10.18.0+
Fix from $1,600 2024-02-17
Sterling B2b Integrator MEDIUM 5.5
CVE-2023-25682

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.1 stores potentially sensitive information in log file…

Fix: 6.0.3.9 / 6.1.2.3+
Fix from $1,600 2023-11-22
Cloud Pak For Data HIGH 7.5
CVE-2023-26023

Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs which could lead an attacker to exploit this vulnerabil…

Patch available
Fix from $1,950 2023-07-19