CVE-2026-15069: Multiple Vulnerabilities in IBM Engineering AI hub.
IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to execute arbitrary script code due to improper neutralization of input during web page generation.
Other sources
IBM Engineering AI Hub could allow a remote attacker to execute arbitrary script code due to improper neutralization of input during web page generation.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Engineering AI Hubto a version that resolves this vulnerability.Fixed in 1.3.0
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15069?
CVE-2026-15069 has a medium severity rating of 5.4.
How do I fix CVE-2026-15069?
To fix CVE-2026-15069, upgrade IBM Engineering AI Hub to the latest version available.
What type of attack is associated with CVE-2026-15069?
CVE-2026-15069 is associated with remote code execution due to improper neutralization of input.
Which versions of IBM Engineering AI Hub are affected by CVE-2026-15069?
IBM Engineering AI Hub versions 1.0.0, 1.1.0, and 1.2.0 are affected by CVE-2026-15069.
What is the potential impact of CVE-2026-15069?
The potential impact of CVE-2026-15069 includes the execution of arbitrary script code by a remote attacker.