SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-13107

HIGH · CVSS 7.1 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Business Automation Workflow containers and traditional deployments are susceptible to XML Entity Injection attacks due to vulnerable programming model artifacts. This vulnerability could allow an attacker to manipulate XML data, potentially leading to unauthorized access or data exposure. Organizations utilizing IBM Business Automation Workflow should prioritize addressing this issue to mitigate the risk of exploitation.

CVE
CVE-2026-13107
Severity
HIGH
CVSS
7.1
EPSS
0.36%

Original NVD Description

IBM Business Automation Workflow containers and traditional may use programming model artifacts that are vulnerable to XML Entity Injection attacks by default.