Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2024-22357
IBM Sterling B2B Integrator 6.0.0.0 through 6.0.3.9, 6.1.0.0 through 6.1.2.3, and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability a…
Sterling B2b Integrator
after 6.1.2.3
HIGH 8.1
CVE-2023-50949
IBM QRadar SIEM 7.5 could allow an unauthorized user to perform unauthorized actions due to improper certificate validation. IBM X-Force ID: 275706.
Qradar Security Information And Event Manager
Mitigation only
HIGH 8.1
CVE-2024-31871
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python …
Security Verify Access
after 10.0.7
HIGH 8.1
CVE-2024-31872
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Open So…
Security Verify Access
after 10.0.7
HIGH 7.5
CVE-2024-31873
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 contains hard-coded credentials which it uses for its own inbound authentication that coul…
Security Verify Access
after 10.0.7
MEDIUM 5.5
CVE-2024-31874
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow a local user to cause a denia…
Security Verify Access
after 10.0.7
CRITICAL 10.0
CVE-2024-25029
IBM Personal Communications 14.0.6 through 15.0.1 includes a Windows service that is vulnerable to remote code execution (RCE) and local privilege es…
Personal Communications
after 15.0.1
HIGH 7.5
CVE-2024-22328
IBM Maximo Application Suite 8.10 and 8.11 could allow a remote attacker to traverse directories on the system. An attacker could send a specially cr…
Maximo Application Suite
Mitigation only
CRITICAL 10.0
CVE-2024-28787
IBM Security Verify Access 10.0.0 through 10.0.7 and IBM Application Gateway 20.01 through 24.03 could allow a remote attacker to obtain highly sensi…
Application Gateway
after 24.03
HIGH 7.5
CVE-2024-27268
IBM WebSphere Application Server Liberty 18.0.0.2 through 24.0.0.4 is vulnerable to a denial of service, caused by sending a specially crafted reques…
Websphere Application Server
24.0.0.5+
MEDIUM 6.5
CVE-2024-27254
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 federated server is vulnerable to denial of service with a spe…
Db2
Mitigation only
MEDIUM 6.5
CVE-2024-22360
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted query on certain…
Db2
Mitigation only
MEDIUM 6.5
CVE-2024-25046
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service by an authenticated user using a…
Db2
Mitigation only
MEDIUM 5.5
CVE-2024-25030
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 stores potentially sensitive information in log files that could be read by a …
Db2
Mitigation only
MEDIUM 6.5
CVE-2023-38729
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using A…
Db2
Mitigation only
MEDIUM 5.3
CVE-2023-52296
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying a specific UDF built-in funct…
Db2
Mitigation only
MEDIUM 6.5
CVE-2024-28782
IBM QRadar Suite Software 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores user credentials in plain clea…
Cloud Pak For Security
after 1.10.18.0
MEDIUM 6.5
CVE-2023-50313
IBM WebSphere Application Server 8.5 and 9.0 could provide weaker than expected security for outbound TLS connections caused by a failure to honor us…
Websphere Application Server
Mitigation only
HIGH 7.5
CVE-2024-22353
IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.4 is vulnerable to a denial of service, caused by sending a specially crafted reques…
Websphere Application Server
after 24.0.0.3
MEDIUM 6.5
CVE-2023-50959
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2,19.0.1, 19.0.2, 19.0.3,20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1,2 2.0.2, 2…
Cloud Pak For Business Automation
Mitigation only
MEDIUM 5.5
CVE-2024-25027
IBM Security Verify Access 10.0.6 could disclose sensitive snapshot information due to missing encryption. IBM X-Force ID: 281607.
Security Verify Access
Patch available
MEDIUM 6.1
CVE-2024-27270
IBM WebSphere Application Server Liberty 23.0.0.3 through 24.0.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar…
Websphere Application Server
24.0.0.4+
MEDIUM 5.4
CVE-2024-28784
IBM QRadar SIEM 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte…
Qradar Security Information And Event Manager
Mitigation only
MEDIUM 5.4
CVE-2023-50961
IBM QRadar SIEM 7.5 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI th…
Qradar Security Information And Event Manager
Mitigation only
HIGH 7.5
CVE-2023-47150
IBM Common Cryptographic Architecture (CCA) 7.0.0 through 7.5.36 could allow a remote user to cause a denial of service due to incorrect data handlin…
Common Cryptographic Architecture
7.5.37+
MEDIUM 6.5
CVE-2022-32753
IBM Security Verify Directory 10.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive info…
Security Verify Directory
Mitigation only
MEDIUM 5.3
CVE-2022-32751
IBM Security Verify Directory 10.0.0 could disclose sensitive server information that could be used in further attacks against the system. IBM X-For…
Security Verify Directory
Mitigation only
MEDIUM 5.5
CVE-2024-27277
The private key for the IBM Storage Protect Plus Server 10.1.0 through 10.1.16 certificate can be disclosed, undermining the security of the certific…
Storage Protect Plus
after 10.1.6
MEDIUM 5.5
CVE-2024-22352
IBM InfoSphere Information Server 11.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 28…
Infosphere Information Server
Mitigation only
CRITICAL 9.8
CVE-2023-35899
IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 is po…
Cloud Pak For Business Automation
Mitigation only