📦 Jazz Foundation

by Ibm

🔍 What is Jazz Foundation?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-36157

CRITICAL CVSS 9.8 Aug 24, 2025

This vulnerability allows unauthenticated remote attackers to modify server property files in IBM Jazz Foundation, potentially enabling unauthorized actions like privilege escalation or configuration ...

CVE-2025-15395

MEDIUM CVSS 4.3 Feb 2, 2026

This CVE describes an access control vulnerability in IBM Jazz Foundation that allows authenticated users to perform actions or view data beyond their authorized permissions. The vulnerability affects...

CVE-2025-1826

MEDIUM CVSS 5.4 Oct 7, 2025

This stored XSS vulnerability in IBM Engineering Requirements Management DOORS Next allows authenticated users to inject malicious JavaScript into the web interface. Attackers could steal session cred...

CVE-2025-25048

MEDIUM CVSS 6.5 Sep 4, 2025

This vulnerability allows authenticated users to upload files to restricted directories in IBM Jazz Foundation due to improper path neutralization. It affects IBM Jazz Foundation versions 7.0.2 throug...

CVE-2024-43184

MEDIUM CVSS 6.1 Sep 4, 2025

This cross-site scripting (XSS) vulnerability in IBM Jazz Foundation allows unauthenticated attackers to inject malicious JavaScript into the web interface. The injected code can steal user credential...

CVE-2023-26280

MEDIUM CVSS 5.3 Nov 25, 2024

This vulnerability allows authenticated users in IBM Jazz Foundation to modify dashboards they shouldn't have access to by sending specially crafted HTTP requests. It affects IBM Jazz Foundation versi...