CVE-2025-36335: Vulnerabilities found
IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.3.0, 5.3.1 stores user credentials in plain text which can be read by a local user.
Other sources
IBM watsonx.data intelligence stores user credentials in plain text which can be read by a local user.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36335?
CVE-2025-36335 has been classified as a high severity vulnerability due to the exposure of user credentials in plain text.
How do I fix CVE-2025-36335?
To fix CVE-2025-36335, upgrade IBM watsonx.data intelligence to the latest version that addresses this issue.
What versions are affected by CVE-2025-36335?
CVE-2025-36335 affects versions 5.2.0, 5.2.1, 5.3.0, and 5.3.1 of IBM watsonx.data intelligence.
What type of information is leaked in CVE-2025-36335?
CVE-2025-36335 allows local users to read sensitive user credentials stored in plain text.
Who is impacted by CVE-2025-36335?
All users of IBM watsonx.data intelligence versions 5.2.0 to 5.3.1 are impacted by CVE-2025-36335.