Security Advisory

CVE-2024-22348

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-20 17:40:31
Last updated 2025-01-21 14:47:02
Assigner ibm
State PUBLISHED

Description

IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains.