VendorsIBMbusiness_automation_workflow24.0.1
Vulnerabilities

IBM Business Automation Workflow 24.0.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2025-13096
XML eXternal Entity injection (XXE) vulnerability affect IBM Business Automation Workflow -
Published 2026-02-02 · Analyzed
7.1EPSS 0.005
CVE-2025-36054
Cross-site scripting vulnerability affect IBM Business Automation Workflow Process Federation Server -
Published 2025-11-06 · Analyzed
6.1EPSS 0.002
CVE-2025-36058
Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025
Published 2026-01-20 · Analyzed
5.5EPSS 0.001
CVE-2025-36059
Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025
Published 2026-01-20 · Analyzed
5.5EPSS 0.001
CVE-2024-54179
IBM Business Automation Workflow cross-site scripting
Published 2025-03-03 · Analyzed
5.4EPSS 0.003
CVE-2025-1495
IBM Business Automation Workflow missing authentication
Published 2025-05-03 · Analyzed
4.3EPSS 0.002
CVE-2026-1248
IBM Business Automation Workflow information leak
Published 2026-05-27 · Analyzed
4.3EPSS 0.002
CVE-2026-12730
Improper Validation of Certificate with Host Mismatch in IBM Business Automation Workflow containers
Published 2026-08-05 · Analyzed
3.8EPSS 0.001