CVE-2024-49354: IBM Concert

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Concert 1.0.0, 1.0.1, and 1.0.2 is vulnerable to sensitive information disclosure through specially crafted API Calls.

Affected products

  • IBM Concert: version 1.0.0 only; version 1.0.1 only; version 1.0.2 only

Published 2025-01-18. Last modified 2026-06-17.