CVE-2023-27290: IBM Observability With Instana
Critical severity, CVSS 9.1. EPSS: 8.6% chance of exploitation in the next 30 days.
Docker based datastores for IBM Instana (IBM Observability with Instana 239-0 through 239-2, 241-0 through 241-2, and 243-0) do not currently require authentication. Due to this, an attacker within the network could access the datastores with read/write access. IBM X-Force ID: 248737.
Affected products
- IBM Observability With Instana: from 239-0, up to and including 239-2; from 241-0, up to and including 241-2; version 243-0 only
Published 2023-03-03. Last modified 2026-06-17.