CVE-2024-38321: IBM Business Automation Workflow
Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2, and 24.0.0 stores potentially sensitive information in log files under certain situations that could be read by an authenticated user. IBM X-Force ID: 284868.
Affected products
- IBM Business Automation Workflow: version 20.0.0.1 only; version 20.0.0.2 only; version 21.0.2 only; version 21.0.3 only; version 22.0.1 only; version 22.0.2 only; …
Published 2024-08-03. Last modified 2026-06-17.