Where
AND
-Infinity
0

Vendor Risk Score

See how ibm compares to other vendors in security performance

View Risk Score →

Software

ibm aix
314
ibm security verify governance
150
ibm security verify access
141
ibm security verify governance identity manager container
136
ibm security verify governance, identity manager software stack
136
ibm security verify governance, identity manager virtual appliance
136
ibm cognos analytics
113
ibm verify identity access
107
ibm db2 universal database
105
ibm security verify access container
105
ibm verify identity access container
104
ibm websphere application server feature pack for web services
81
ibm watsonx.data intelligence
80
ibm data risk manager
77
ibm db2
74
ibm concert software
69
ibm infosphere data architect
67
ibm api connect v12 onprem
64
ibm cloud pak for security
54
ibm security verify governance, identity manager virtual appliance component
54
ibm security verify governance, identity manager software component
53
ibm qradar security information and event manager
49
ibm security guardium
42
ibm infosphere guardium z/os
37
ibm agentics
35
ibm db2 genius hub
35
ibm qradar siem
35
ibm edge application manager
34
ibm security qradar
34
ibm data virtualization on cloud pak for data
33
ibm watson query on cloud pak for data
33
ibm infosphere information server
32
ibm iseries as/400
32
ibm api connect
26
ibm cloud pak system
26
ibm websphere mq appliance
26
ibm cognos controller
25
ibm websphere application server
24
ibm maximo asset management
22
ibm security verify governance - identity manager
22
ibm tivoli storage manager fastback
20
ibm lotus domino
19
ibm rational team concert
19
ibm b2b sterling integrator
18
ibm gde
18
ibm security identity manager
18
ibm spectrum scale
18
ibm vios
18
ibm i
16
ibm planning analytics cloud
16

IBM PowerVM NovalinkVulnerabilities in IBM WebSphere Application affects IBM PowerVM Novalink.

Risk 31
Severity
7.5
EPSS
0.31%
First published (updated )

IBM Engineering AI HubMultiple Vulnerabilities in IBM Engineering AI hub.

Risk 43
Severity
7.5
First published (updated )

IBM Langflow OSSLangflow is affected by remote code execution, denial of service, path traversal, and exposed credentials due to multiple unauthenticated and insufficiently authorized API endpoints

Risk 79
Severity
8.8
First published (updated )

IBM Langflow OSSLangflow is affected by remote code execution, denial of service, path traversal, and exposed credentials due to multiple unauthenticated and insufficiently authorized API endpoints

Risk 60
Severity
8.1
First published (updated )

IBM DB2IBM® Data Server driver for JDBC and SQLJ is vulnerable to remote code execution when jdbc url is under user control

Risk 51
Severity
7.8
EPSS
0.17%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Storage Protect ClientIBM Storage Protect Client is vulnerable to Heap-Based Buffer Overflow

Risk 75
Severity
8.1
First published (updated )

IBM Langflow OSSPath Traversal Vulnerability in API Request Component Content-Disposition Header Processing

Risk 79
Severity
8.8
First published (updated )

IBM Langflow OSSPath Traversal Vulnerability in File Component Leading to Arbitrary File Read and Authentication Bypass

Risk 60
Severity
8.1
First published (updated )

IBM Langflow OSSSSRF Protection Configuration Vulnerability

Risk 44
Severity
7.7
First published (updated )

IBM Langflow OSSMCP Server Configuration Validator Bypass via File Upload API

Risk 79
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Langflow OSSParameter Injection Vulnerability in API Graph Execution Engine

Risk 79
Severity
8.8
First published (updated )

IBM WebSphere Extreme ScaleIBM WebSphere eXtreme Scale is affected by Insecure Deserilization

Risk 79
Severity
8.8
First published (updated )

IBM WebSphere Application ServerIBM WebSphere Application Server is affected by a Path Traversal vulnerability

Risk 43
Severity
7.5
First published (updated )

IBM InfoSphere Information ServerIBM DataStage Flow Designer application is affected by an information disclosure vulnerability

Risk 31
Severity
7.5
EPSS
0.24%
First published (updated )

IBM Langflow OSSSSRF Vulnerability in Langflow OSS Legacy Components Bypasses Protection

Risk 54
Severity
8.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Devops AutomationIBM DevOps Loop is susceptible to an Insufficient Session Expiration vulnerability.

Risk 60
Severity
8.1
First published (updated )

IBM Langflow OSSSSRF via HTTP Redirect Following in Langflow API Request Component

Risk 55
Severity
8.5
First published (updated )

IBM Langflow OSSDNS Rebinding TOCTOU Bypass of SSRF Protection in Langflow OSS URL Component

Risk 48
Severity
7.1
First published (updated )

IBM UCD - IBM DevOps DeployIBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to a Permissive Cross-domain Security Policy with Untrusted Domains

Risk 43
Severity
7.5
First published (updated )

IBM PowerVM NovalinkIBM WebSphere Application Server Liberty is affected by a an arbitrary file read vulnerability

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM WebSphere Application ServerIBM WebSphere Application Server is affected by multiple cross-site scripting vulnerabilities

Risk 61
Severity
8.5
First published (updated )

IBM Watson Speech Services CartridgeIBM Sterling File Gateway SQL Injection

Risk 79
Severity
8.8
First published (updated )

IBM WebSphere Application ServerIBM WebSphere Application Server is affected by an authentication bypass vulnerability

Risk 51
Severity
7.3
First published (updated )

IBM iWebSphere Application Server Remote Code Execution

Risk 56
Severity
8.8
EPSS
0.26%
First published (updated )

IBM iWebsphere Application Server is Affected By a Denial of Service

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM DatacapMultiple Vulnerabilities in IBM Datacap

Risk 31
Severity
7.5
EPSS
0.15%
First published (updated )

IBM WebSphere Application ServerIBM WebSphere Application Server and WebSphere Application Server Liberty are affected by Uncontrolled Resource Consumption

Risk 31
Severity
7.5
EPSS
0.55%
First published (updated )

IBM WebSphere Application ServerIBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities

Risk 31
Severity
7.5
EPSS
0.35%
First published (updated )

IBM Qiskit SDKQiskit SDK is vulnerable to specific functions may recurse too deeply and overflow the available stack space, when encountering certain classical expressions.

Risk 43
Severity
7.5
First published (updated )

Apache CXFApache CXF: No restriction on attachment headers per message

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203