CVE-2025-13212: IBM Aspera Console

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Aspera Console 3.3.0 through 3.4.8 could allow an authenticated user to cause a denial of service in the email service due to improper control of interaction frequency.

Affected products

  • IBM Aspera Console: from 3.3.0, before 3.4.9 (fixed in 3.4.9)

Published 2026-03-16. Last modified 2026-06-17.