CVE-2025-36092: IBM Cloud Pak For Business Automation

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an authenticated user to cause a denial of service due to the improper validation of input length.

Affected products

  • IBM Cloud Pak For Business Automation: version 24.0.0 only; version 24.0.1 only; version 25.0.0 only

Published 2025-11-03. Last modified 2026-06-17.