CVE-2024-51472: IBM Devops Deploy
Low severity, CVSS 3.1. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure.
Affected products
- IBM Devops Deploy: from 8.0.0.0, up to and including 8.0.1.3
- IBM Urbancode Deploy: from 7.2, up to and including 7.2.3.13; from 7.3, up to and including 7.3.2.8
Published 2025-01-06. Last modified 2026-06-17.