CVE-2023-38009: IBM Cognos Analytics

Medium severity, CVSS 5.9. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to the lack of certificate pinning.

Affected products

  • IBM Cognos Analytics: version 1.1 only

Published 2025-01-26. Last modified 2026-06-17.