CVE-2016-0369: IBM Forms Experience Builder

Low severity, CVSS 2.7. EPSS: 1% chance of exploitation in the next 30 days.

XML external entity (XXE) vulnerability in IBM Forms Experience Builder 8.5, 8.5.1, and 8.6 allows remote authenticated users to obtain sensitive information via crafted XML data. IBM X-Force ID: 112088.

Affected products

  • IBM Forms Experience Builder: version 8.5 only; version 8.5.1 only; version 8.6.0 only

Published 2018-02-21. Last modified 2026-06-17.