Security Advisory

CVE-2025-36320

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-30 20:22:12
Last updated 2026-07-01 12:57:14
Assigner ibm
CVSS score 6.4
State PUBLISHED

Description

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.