PT-2026-22818 · Ibm · Datastage On Cloud Pak For Data

Published

2026-03-03

·

Updated

2026-03-03

·

CVE-2025-13688

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM DataStage on Cloud Pak for Data versions 5.1.2 through 5.3.0
Description An authenticated user may be able to execute arbitrary commands with normal user privileges on the system. This is due to improper validation of user-supplied input through the wrapped command component.
Recommendations Versions prior to 5.1.2 and after 5.3.0 should not be affected.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-13688

Affected Products

Datastage On Cloud Pak For Data