CVE-2023-23476: IBM Robotic Process Automation
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
IBM Robotic Process Automation 21.0.0 through 21.0.7.latest is vulnerable to unauthorized access to data due to insufficient authorization validation on some API routes. IBM X-Force ID: 245425.
Affected products
- IBM Robotic Process Automation: from 21.0.0, before 23.0.0 (fixed in 23.0.0)
- IBM Robotic Process Automation For Cloud Pak: from 21.0.0, before 23.0.0 (fixed in 23.0.0)
Published 2023-08-02. Last modified 2026-06-17.