CVE-2022-22503: IBM Robotic Process Automation
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
IBM Robotic Process Automation 21.0.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 227125.
Affected products
- IBM Robotic Process Automation: before 21.0.1 (fixed in 21.0.1)
- IBM Robotic Process Automation As A Service: before 21.0.1 (fixed in 21.0.1)
Published 2022-10-06. Last modified 2026-06-17.