CVE-2019-4399: IBM Cloud Orchestrator
High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.
IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 162260.
Affected products
- IBM Cloud Orchestrator: from 2.4.0.0, up to and including 2.4.0.5; from 2.5.0.0, up to and including 2.5.0.9
Published 2019-10-25. Last modified 2026-06-17.