📦 Cloud Pak For Business Automation

by Ibm

🔍 What is Cloud Pak For Business Automation?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-35899

HIGH CVSS 7.0 Mar 21, 2024

This CVE describes a CSV injection vulnerability in IBM Cloud Pak for Automation that allows remote attackers to execute arbitrary commands on affected systems. The vulnerability occurs due to imprope...

CVE-2025-36094

MEDIUM CVSS 5.4 Feb 3, 2026

This vulnerability in IBM Cloud Pak for Business Automation allows authenticated users to cause denial of service or data corruption by sending improperly validated input. It affects versions 25.0.0 t...

CVE-2025-36172

MEDIUM CVSS 6.4 Nov 3, 2025

This stored XSS vulnerability in IBM Cloud Pak for Business Automation allows authenticated users to inject malicious JavaScript into the web interface. The injected code can execute in other users' b...

CVE-2025-36091

MEDIUM CVSS 4.3 Nov 3, 2025

This vulnerability in IBM Cloud Pak for Business Automation allows authenticated users to assign invalid ownership to dashboards, potentially making them inaccessible to legitimate users. It affects v...

CVE-2025-36092

MEDIUM CVSS 6.5 Nov 3, 2025

This vulnerability in IBM Cloud Pak for Business Automation allows authenticated users to cause denial of service by sending specially crafted input that triggers improper length validation. It affect...

CVE-2025-36093

MEDIUM CVSS 4.8 Nov 3, 2025

This vulnerability in IBM Cloud Pak for Business Automation allows attackers to perform unauthorized actions or access restricted content through man-in-the-middle attacks due to improper access contr...

CVE-2025-1838

MEDIUM CVSS 6.5 May 3, 2025

This vulnerability in IBM Cloud Pak for Business Automation allows authenticated users to bypass client-side validation in the authoring interface, potentially causing denial of service. It affects ve...

CVE-2024-41753

MEDIUM CVSS 6.1 May 3, 2025

This cross-site scripting vulnerability in IBM Cloud Pak for Business Automation allows unauthenticated attackers to inject malicious JavaScript into the web interface. This could lead to credential t...

CVE-2024-52364

MEDIUM CVSS 5.4 Feb 5, 2025

This CVE describes a cross-site scripting (XSS) vulnerability in IBM Cloud Pak for Business Automation that allows authenticated users to inject malicious JavaScript into the web interface. The vulner...

CVE-2024-37528

MEDIUM CVSS 4.8 Jul 8, 2024

This CVE describes a stored cross-site scripting (XSS) vulnerability in IBM Cloud Pak for Business Automation that allows privileged users to inject malicious JavaScript into the web interface. The vu...