CVE-2025-14148: IBM Devops Deploy

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM UCD - IBM DevOps Deploy 8.1 through 8.1.2.3 could allow an authenticated user with LLM integration configuration privileges to recover a previously saved LLM API Token.

Affected products

  • IBM Devops Deploy: from 8.1.0.0, before 8.1.2.4 (fixed in 8.1.2.4)

Published 2025-12-15. Last modified 2026-10-07.