Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for August 2026.
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.4epss 0.3%
exploitation probability
0.3%top 77% of all CVEs
observed exploitation
nono source reports it
IBM Cloud Pak for Business Automation could allow a remote attacker to bypass authorization and invoke restricted endpoints due to improper validation of HTTP headers.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Affected products
IBM · Cloud Pak for Business Automation