CVE-2026-13365: IBM Planning Analytics Local

Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Planning Analytics 2.0, and 2.1 Local is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

Affected products

  • IBM Planning Analytics Local: from 2.0.0, before 2.1.23 (fixed in 2.1.23)

Published 2026-08-13. Last modified 2026-08-17.