← back
CVE-2025-1333

IBM MQ Operator information disclosure

CVSS 6 MEDIUMEPSS 0.2%CWE-214
IBM MQ Container when used with the IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, and MQ Operator SC2 3.2.0 through 3.2.10 and configured with Cloud Pak for Integration Keycloak could disclose sensitive information to a privileged user.
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Affected products
IBM · MQ Operator

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →