CVE-2025-27906: IBM Content Navigator
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Content Navigator 3.0.11, 3.0.15, 3.1.0, and 3.2.0 could expose the directory listing of the application upon using an application URL. Application files and folders are visible in the browser to a user; however, the contents of the files cannot be read obtained or modified.
Affected products
- IBM Content Navigator: version 3.0.11 only; version 3.0.15 only; version 3.1.0 only; version 3.2.0 only
Published 2025-10-14. Last modified 2026-10-08.