SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-12742

MEDIUM · CVSS 5.4 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Business Automation Workflow containers and traditional deployments are vulnerable to unauthorized import actions due to insufficient authorization controls. An authenticated attacker could exploit this weakness to perform restricted operations, potentially compromising the integrity of the workflow environment. Organizations using these IBM products should prioritize addressing this vulnerability to mitigate the risk of unauthorized access and data manipulation.

CVE
CVE-2026-12742
Severity
MEDIUM
CVSS
5.4
EPSS
0.23%

Original NVD Description

IBM Business Automation Workflow containers and traditional could allow an authenticated attacker to trigger restricted import actions due to missing authorization controls.