CVE-2025-13691

HIGH

IBM DataStage 5.1.2-5.3.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 returns sensitive information in an HTTP response that could be used to impersonate other users in the system.

References (1)

Core 1
Core References
Various Sources vendor-advisory patch
https://www.ibm.com/support/pages/node/7259956

Scores

CVSS v3 8.1
EPSS 0.0029
EPSS Percentile 20.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-497
Status published
Products (1)
ibm/datastage_on_cloud_pak_for_data 5.1.2 - 5.3.1
Published Feb 17, 2026
Tracked Since Feb 18, 2026