Home/Product/ibm watsonx.data
Product

ibm watsonx.data

9 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-36145
>= 2.2.0 and <= 2.3.1
IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an
5.4MEDIUM
CVE-2025-36335
all versions
IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.3.0, 5.3.1 stores user credentials in plain text which can be read by a local user.
6.2MEDIUM
CVE-2025-36180
>= 2.2.0 and <= 2.3
IBM watsonx.data 2.2 through 2.3 IBM Lakehouse does not properly restrict communication between pods which could allow an attacker
5.3MEDIUM
CVE-2025-36183
>= 2.2.0 and < 2.2.2
IBM watsonx.data 2.2 through 2.2.1 IBM Lakehouse could allow a privileged user to upload malicious files that could be executed se
3.8LOW
CVE-2025-36140
>= 2.2.0 and < 2.2.2
IBM watsonx.data 2.2 through 2.2.1 could allow an authenticated user to cause a denial of service through ingestion pods due to im
6.5MEDIUM
CVE-2025-36144
all versions
IBM Lakehouse (watsonx.data 2.2) stores potentially sensitive information in log files that could be read by a local user.
3.3LOW
CVE-2025-36146
all versions
IBM Lakehouse (watsonx.data 2.2) could allow an authenticated user to obtain sensitive server component version information which
4.3MEDIUM
CVE-2025-36143
all versions
IBM Lakehouse (watsonx.data 2.2) could allow an authenticated privileged user to execute arbitrary commands on the system due to i
4.7MEDIUM
CVE-2025-36139
all versions
IBM Lakehouse (watsonx.data 2.2) is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embe
5.5MEDIUM
threatengine.sh