CVE-2025-0923: IBM Cognos Analytics
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 stores source code on the web server that could aid in further attacks against the system.
Affected products
- IBM Cognos Analytics: from 11.2.0, up to and including 11.2.4; from 12.0.0, up to and including 12.0.4; version 11.2.4 only
Published 2025-06-11. Last modified 2026-06-17.