CVE-2024-45091: IBM Urbancode Deploy
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensitive information in log files that could be read by a local user with access to HTTP request logs.
Affected products
- IBM Urbancode Deploy: from 7.0.0.0, before 7.0.5.25 (fixed in 7.0.5.25); from 7.1.0.0, before 7.1.2.21 (fixed in 7.1.2.21); from 7.2.0.0, before 7.2.3.14 (fixed in 7.2.3.14)
Published 2025-01-21. Last modified 2026-06-17.