Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-14290 1 Ibm 3 Webmethods Integration On Prem Integration Server, Webmethods Integration On Prem Integration Server, Webmethods Integration Server 2026-06-01 5.4 Medium
IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM webMethods Integration is vulnerable to server-side request forgery (SSRF). This may allow an authenticatedĀ attacker to send unauthorized requests from the system, potentially leading to network enumeration orĀ facilitating other attacks.
CVE-2025-14289 1 Ibm 1 Webmethods Integration Server 2026-02-20 5.4 Medium
IBM webMethods Integration Server 12.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hostingĀ site.