Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The product needs to be installed or upgraded to the latest available level watsonx.data 2.3.x or watsonx.data on CPD 5.3.x. Installation/upgrade instructions can be found here: https://www.ibm.com/docs/en/software-hub/5.3.x?topic=watsonxdata-installing
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7272498 |
|
Mon, 01 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm watsonx.data
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:ibm:watsonx.data:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm watsonx.data
|
Tue, 26 May 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an attacker to transfer or modify files without restrictions. | |
| Title | Multiple Vulnerabilities in watsonx.data | |
| First Time appeared |
Ibm
Ibm watsonxdata |
|
| Weaknesses | CWE-923 | |
| CPEs | cpe:2.3:a:ibm:watsonxdata:2.2.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:watsonxdata:2.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:watsonxdata:2.3.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm watsonxdata |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-05-26T17:42:05.425Z
Reserved: 2025-04-15T21:16:19.940Z
Link: CVE-2025-36145
Updated: 2026-05-26T17:41:56.899Z
Status : Analyzed
Published: 2026-05-26T17:16:28.870
Modified: 2026-06-17T09:14:32.670
Link: CVE-2025-36145
No data.
OpenCVE Enrichment
Updated: 2026-06-01T18:30:06Z