CVE-2025-12530

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
30/06/2026
Last modified:
30/07/2026

Description

IBM watsonx.data intelligence 5.2.2, 5.3.0, 5.3.1, 5.3.1 through Patch 1 transmits data in clear text that could allow an attacker to obtain sensitive information using man in the middle techniques.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:watsonx.data_intelligence:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:software_hub:*:*:*:*:*:*:*:* 5.2.2 (including) 5.3.1 (excluding)
cpe:2.3:a:ibm:software_hub:5.3.1:-:*:*:*:*:*:*
cpe:2.3:a:ibm:software_hub:5.3.1:patch1:*:*:*:*:*:*


References to Advisories, Solutions, and Tools