← לוח פגיעויות

CVE-2026-12751

בינונית 5.4

תיאור (מקור, אנגלית)

IBM Cloud Pak for Business Automation is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.

מדדים

CVSS 3.1
5.4 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-27/9/2026
CWE
CWE-80

מוצרים מושפעים

ibm: cloud pak for business automation

קישורים