CVE-2018-1833: IBM Event Streams

Medium severity, CVSS 5.3. EPSS: 1.7% chance of exploitation in the next 30 days.

IBM Event Streams 2018.3.0 could allow a remote attacker to submit an API request with a fake Host request header. An attacker, who has already gained authorised access via the CLI, could exploit this vulnerability to spoof the request header. IBM X-Force ID: 150507.

Affected products

  • IBM Event Streams: version 2018.3.0 only

Published 2018-12-18. Last modified 2026-06-17.