CVE-2025-13108: IBM DB2 Merge Backup
High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.
IBM DB2 Merge Backup for Linux, UNIX and Windows 12.1.0.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.
Affected products
- IBM DB2 Merge Backup: version 12.1.0.0 only
Published 2026-02-17. Last modified 2026-06-17.