CVE-2025-36107: IBM Cognos Analytics Mobile

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to obtain sensitive information due to the cleartext transmission of data.

Affected products

  • IBM Cognos Analytics Mobile: from 1.1.0, before 1.1.23 (fixed in 1.1.23)

Published 2025-07-21. Last modified 2026-06-17.