CyberRota
← Ana sayfaya dön

CVE-2025-36320

MEDIUM · CVSS 6.4

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-06-30T21:16:29.227 · Çekilme zamanı: 2026-07-01T06:08:35.582176+00:00

CyberRota Yorumu

Saldırganın giriş yapmış olması gerekebilir.

CVE
CVE-2025-36320
Severity
MEDIUM
CVSS
6.4
EPSS
Yok
Java

Orijinal NVD Açıklaması

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.