CVE-2025-36374 - IBM DataPower Gateway affected by XML external entity injection
CVE ID :CVE-2025-36374
Published : July 30, 2026, 5:55 p.m. | 57 minutes ago
Description :IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A privileged user could exploit this vulnerability to expose sensitive information or consume memory resources.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : July 30, 2026, 5:55 p.m. | 57 minutes ago
Description :IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A privileged user could exploit this vulnerability to expose sensitive information or consume memory resources.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...