VendorsIBMcloud_pak_for_securityany version
Vulnerabilities

IBM Cloud Pak any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

30CVEs
CVE-2025-25022
IBM QRadar Suite Software and IBM Cloud Pak for Security information disclosure
Published 2025-06-03 · Analyzed
9.6EPSS 0.003
CVE-2022-38387
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 233786.
Published 2022-11-11 · Modified
8.8EPSS 0.009
CVE-2023-47726
IBM QRadar Suite improper input validation
Published 2024-06-18 · Analyzed
8.8EPSS 0.004
CVE-2022-38385
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow an authenticated user to obtain highly sensitive information or perform unauthorized actions due to improper input validation. IBM X-Force ID: 233777.
Published 2022-11-11 · Modified
8.1EPSS 0.005
CVE-2023-30993
IBM Cloud Pak for Security information disclosure
Published 2023-06-27 · Modified
7.5EPSS 0.006
CVE-2023-47728
IBM QRadar Suite Software information disclosure
Published 2024-08-16 · Modified
7.5EPSS 0.005
CVE-2024-28799
IBM QRadar Suite Software information disclosure
Published 2024-08-14 · Modified
7.5EPSS 0.003
CVE-2025-25021
IBM QRadar Suite Software and IBM Cloud Pak for Security code injection
Published 2025-06-03 · Analyzed
7.2EPSS 0.006
CVE-2021-39089
IBM Cloud Pak for Security information disclosure
Published 2023-01-20 · Modified
6.5EPSS 0.007
CVE-2022-36777
IBM Cloud Pak for Security information disclosure
Published 2023-11-22 · Modified
6.5EPSS 0.006
CVE-2025-25020
IBM QRadar Suite Software and IBM Cloud Pak for Security improper input validation
Published 2025-06-03 · Analyzed
6.5EPSS 0.004
CVE-2024-28782
IBM QRadar Suite Software information disclosure
Published 2024-04-03 · Analyzed
6.5EPSS 0.004
CVE-2025-25019
IBM QRadar Suite Software and IBM Cloud Pak for Security session fixation
Published 2025-06-03 · Analyzed
6.5EPSS 0.003
CVE-2022-38386
IBM Cloud Pak for Security information disclosure
Published 2024-05-01 · Analyzed
5.9EPSS 0.005
CVE-2021-39090
IBM Cloud Pak for Security information disclosure
Published 2024-02-29 · Analyzed
5.9EPSS 0.004
CVE-2024-22355
IBM QRadar Suite information dislosure
Published 2024-03-03 · Analyzed
5.9EPSS 0.004
CVE-2023-47742
IBM QRadar Suite information dislosure
Published 2024-03-03 · Analyzed
5.9EPSS 0.002
CVE-2024-22336
IBM QRadar Suite information disclosure
Published 2024-02-17 · Analyzed
5.5EPSS 0.002
CVE-2024-22335
IBM QRadar Suite information disclosure
Published 2024-02-17 · Analyzed
5.5EPSS 0.002
CVE-2024-22337
IBM QRadar Suite information disclosure
Published 2024-02-17 · Analyzed
5.5EPSS 0.002
CVE-2024-25024
IBM QRadar Suite Software information disclosure
Published 2024-08-15 · Modified
5.5EPSS 0.001
CVE-2024-25023
IBM QRadar Suite Software information disclosure
Published 2024-07-09 · Modified
5.5EPSS 0.001
CVE-2022-36776
IBM Cloud Pak for Security (CP4S) 1.10.0.0 79and 1.10.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 233663.
Published 2022-11-11 · Modified
5.4EPSS 0.004
CVE-2023-47731
IBM QRadar Suite Software cross-site scripting
Published 2024-04-23 · Analyzed
5.4EPSS 0.003
CVE-2021-39011
IBM Cloud Pak for Security information disclosure
Published 2023-01-20 · Modified
4.9EPSS 0.006
CVE-2022-38382
IBM Cloud Pak for Security session fixation
Published 2024-08-13 · Modified
4.7EPSS 0.003
CVE-2023-50951
IBM QRadar Suite information disclosure
Published 2024-02-17 · Analyzed
4.3EPSS 0.004
CVE-2023-47727
IBM QRadar Suite Software file manipulation
Published 2024-05-02 · Analyzed
4.3EPSS 0.003
CVE-2025-1334
IBM QRadar Suite Software and IBM Cloud Pak for Security information disclosure
Published 2025-06-03 · Analyzed
4.0EPSS 0.002
CVE-2022-38383
IBM Cloud Pak for Security information disclosure
Published 2024-06-28 · Modified
4.0EPSS 0.002