Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Transformation Advisor
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-41299 1 Ibm 1 Transformation Advisor 2025-10-29 N/A 4.4 MEDIUM
IBM Cloud Transformation Advisor 2.0.1 through 3.3.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 237214.
CVE-2025-36193 1 Ibm 1 Transformation Advisor 2025-09-29 N/A 8.4 HIGH
IBM Transformation Advisor 2.0.1 through 4.3.1 incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Transformation Advisor Operator Catalog image.