CVE-2025-3319: IBM Spectrum Protect Server
Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM Spectrum Protect Server 8.1 through 8.1.26 could allow attacker to bypass authentication due to improper session authentication which can result in access to unauthorized resources.
Affected products
- IBM Spectrum Protect Server: from 8.1.0.0, up to and including 8.1.26
Published 2025-06-20. Last modified 2026-06-17.