CVE-2025-13689

IBM DataStage on Cloud Pak for Data could allow an authenticated user to execute arbitrary commands and gain access to sensitive information due to unrestricted file uploads.
References
Link Resource
https://www.ibm.com/support/pages/node/7259958 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:*:*:*:*:*:*:*:*

History

20 Feb 2026, 16:47

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:*:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7259958 - () https://www.ibm.com/support/pages/node/7259958 - Vendor Advisory
First Time Ibm
Ibm datastage On Cloud Pak For Data

18 Feb 2026, 17:51

Type Values Removed Values Added
Summary
  • (es) IBM DataStage en Cloud Pak for Data podría permitir a un usuario autenticado ejecutar comandos arbitrarios y obtener acceso a información sensible debido a cargas de archivos sin restricciones.

17 Feb 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-17 23:16

Updated : 2026-02-20 16:47


NVD link : CVE-2025-13689

Mitre link : CVE-2025-13689

CVE.ORG link : CVE-2025-13689


JSON object : View

Products Affected

ibm

  • datastage_on_cloud_pak_for_data
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type