Where
AND
-Infinity
0

Vendor Risk Score

See how ibm compares to other vendors in security performance

View Risk Score →

Software

ibm aix
300
ibm security verify governance
149
ibm security verify governance identity manager container
136
ibm security verify governance, identity manager software stack
136
ibm security verify governance, identity manager virtual appliance
136
ibm cognos analytics
107
ibm db2 universal database
107
ibm websphere application server feature pack for web services
81
ibm data risk manager
80
ibm concert software
78
ibm infosphere data architect
73
ibm db2
67
ibm cloud pak for security
54
ibm security verify governance, identity manager virtual appliance component
52
ibm security verify governance, identity manager software component
51
ibm qradar security information and event manager
48
ibm infosphere guardium z/os
42
ibm security qradar
41
ibm watsonx.data intelligence
41
ibm security verify access
39
ibm security guardium
37
ibm iseries as/400
32
ibm infosphere information server
31
ibm edge application manager
29
ibm qradar siem
29
ibm data virtualization on cloud pak for data
28
ibm security verify governance - identity manager
28
ibm websphere mq appliance
27
ibm cloud pak system
26
ibm cognos controller
26
ibm watson query on cloud pak for data
26
ibm maximo asset management
22
ibm tivoli storage manager fastback
20
ibm lotus domino
19
ibm rational team concert
19
ibm b2b sterling integrator
18
ibm cloud pak for business automation
18
ibm gde
18
ibm security identity manager
18
ibm security guardium insights
17
ibm security verify access oidc provider
17
ibm tivoli storage manager
17
ibm planning analytics cloud
16
ibm security guardium key lifecycle manager
16
ibm spectrum scale
16
ibm virtual i/o server (vios)
16
ibm websphere mq light
16
ibm security verify information queue
15
ibm aspera faspex on demand
14
ibm os image for red hat linux systems
14

Google AndroidInput Validation

Risk 43
Severity
7.5
First published (updated )

IBM Langflow DesktopUnauthenticated Insecure Direct Object Reference (IDOR) Vulnerability in Langflow Desktop Image Download Endpoint

Risk 43
Severity
7.5
First published (updated )

IBM Langflow DesktopAuthenticated Remote Code Execution Vulnerability in Langflow Code Validation Endpoint

Risk 56
Severity
8.8
EPSS
0.04%
First published (updated )

IBM Langflow OSSMonitor API allows cross-user read of transaction logs and deletion of build data via flow_id

Risk 43
Severity
8.1
EPSS
0.03%
First published (updated )

IBM Turbonomic prometurbo agentIBM Turbonomic Prometurbo agent used by IBM Turbonomic Application Resource Management is affected by a single vulnerability

Risk 53
Severity
8.8
EPSS
0.01%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM watsonx.dataInadequate Pod Communication Restrictions, affects watsonx.data

Risk 43
Severity
7.5
First published (updated )

IBM WebSphere Application Server LibertyIBM WebSphere Application Server Liberty is affected by identity spoofing

Risk 70
Severity
7.5
First published (updated )

IBM Security Verify DirectorySecurity vulnerability has been detected in IBM Security Verify Directory

Risk 66
Severity
7.2
First published (updated )

IBM Langflow DesktopIBM Langflow Desktop FAISS Vector Store Remote Code Execution via malicious Pickle file

Risk 79
Severity
8.8
First published (updated )

IBM Tivoli Netcool ImpactMultiple Vulnerabilities affect IBM Tivoli Netcool Impact

Risk 54
Severity
8.4
EPSS
0.01%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Verify Identity Access ContainerSecurity Vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access

Risk 51
Severity
7.3
First published (updated )

IBM Verify Identity Access ContainerSecurity Vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access

Risk 62
Severity
8.5
First published (updated )

IBM Verify Identity Access ContainerSecurity Vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access

Risk 44
Severity
7.2
First published (updated )

IBM DataPower GatewayIBM DataPower Gateway vulnerable to CSRF

Risk 77
Severity
8.8
First published (updated )

IBM Aspera SharesMultiple vulnerabilities have been addressed in IBM Aspera Shares

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Storage Protect ServerIBM Storage Protect Server is affected by a vulnerability that could allow authenticated users to access administrative metadata through the JSON-RPC endpoint .

Risk 79
Severity
8.8
First published (updated )

IBM InfoSphere Information ServerIBM InfoSphere Information Server is vulnerable due to Insecure Direct Object Reference

Risk 43
Severity
7.5
First published (updated )

IBM WebSphere Application Server - LibertyIBM WebSphere Application Server Liberty is affected by a privilege escalation vulnerability

Risk 66
Severity
7.2
First published (updated )

IBM InfoSphere Information ServerIBM InfoSphere Information Server is vulnerable due to plaintext storage of a password

Risk 40
Severity
7.1
First published (updated )

IBM Concert SoftwareMultiple Vulnerabilities in IBM Concert Software

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

npm/flattedflatted: Prototype Pollution via parse()

Risk 61
Severity
8.9
EPSS
0.03%
First published (updated )

IBM iIBM i Denial of Service

Risk 43
Severity
7.5
First published (updated )

IBM Sterling B2B IntegratorIBM Sterling B2B Integrator and IBM Sterling File Gateway Improper Access Controls

Risk 48
Severity
7.1
First published (updated )

IBM Sterling B2B IntegratorIBM Sterling B2B Integrator and IBM Sterling File Gateway Denial of Service

Risk 43
Severity
7.5
First published (updated )

IBM CICS Transaction Gateway for MultiplatformsIBM CICS Transaction Gateway for Multiplatforms Information Disclosure

Risk 48
Severity
7.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

npm/undiciundici is vulnerable to Unhandled Exception in undici WebSocket Client Due to Invalid server_max_window_bits Validation

Risk 43
Severity
7.5
First published (updated )

npm/undiciundici is vulnerable to Malicious WebSocket 64-bit length overflows undici parser and crashes the client

Risk 43
Severity
7.5
First published (updated )

npm/undiciundici is vulnerable to Unbounded Memory Consumption in undici WebSocket permessage-deflate Decompression

Risk 43
Severity
7.5
First published (updated )

IBM Sterling Partner Engagement ManagerIBM Sterling Partner Engagement Manager Information Disclosure

Risk 43
Severity
7.5
First published (updated )

IBM Sterling Partner Engagement ManagerIBM Sterling Partner Engagement Manager Information Disclosure

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203