PT-2026-43280 · Ibm · Watsonx.Data

Published

2026-05-26

·

Updated

2026-05-26

·

CVE-2025-36145

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an attacker to transfer or modify files without restrictions.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-36145

Affected Products

Watsonx.Data