Aller au contenu

Fiche vulnérabilité

CVE-2026-12084 : faille élevée ibm devops deploy (CVSS 7.5)

Description

IBM UCD - IBM DevOps Deploy 8.1 through 8.1.2.6, and 8.2 through 8.2.1.0 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
30 juin 2026
Dernière mise à jour
2 juil. 2026

Produits concernés

  • ibm devops deploy

Références

Rechercher une autre vulnérabilité dans la base CVE