Vulnerability Bulletins

CVE-2026-12752

   
Affected software IBM
 
IBM Business Automation Workflow containers and traditional is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resource.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-12752