CVE-2025-36290
IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.
- Published Aug 28, 2026
- CVSS 5.9 medium
- 0.2% chance of exploitation in the next 30 days (EPSS)
- A fix is available