CVE-2026-7253: IBM Watson Speech Services Cartridge

Medium severity, CVSS 6.0. EPSS: 0.4% chance of exploitation in the next 30 days.

IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL injection. A privileged user could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.

Affected products

  • IBM Watson Speech Services Cartridge: from 4.0.0, before 5.3.1 (fixed in 5.3.1); version 5.3.1 only

Published 2026-06-22. Last modified 2026-07-23.