CVE-2025-64648: IBM Concert

Medium severity, CVSS 5.9. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Concert 1.0.0 through 2.2.0 transmits data in clear text that could allow an attacker to obtain sensitive information using man in the middle techniques.

Affected products

  • IBM Concert: from 1.0.0, up to and including 2.2.0

Published 2026-03-25. Last modified 2026-06-17.