Content Navigator
40 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Content Navigator, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Content Navigator CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 1 |
| 2025-05 | 1 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 1 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 1 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 40 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High5
- Medium31
- Low4
Latest CVEs
The 15 most recently published vulnerabilities affecting Content Navigator.
- CVE-2026-1243IBM Content Navigator is affected by , a Cross-Site Scripting (XSS) vulnerability5.4
- CVE-2025-27906IBM Content Navigator information disclosure5.3
- CVE-2024-51475IBM Content Navigator HTML injection5.4
- CVE-2024-56341IBM Content Navigator cross-site scripting5.4
- CVE-2023-35896IBM Content Navigator server-side request forgery5.4
- CVE-2023-40684IBM Content Navigator cross-site scripting4.6
- CVE-2022-43581IBM Content Navigator code execution7.5
- CVE-2021-29714IBM Content Navigator 3.0.CD could allow a malicious user to cause a denial of service due to improper input validation. IBM X-Force ID: 200968.6.5
- CVE-2021-20549IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potenti...5.4
- CVE-2021-20550IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potenti...5.4
- CVE-2021-20448IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potenti...5.4
- CVE-2020-4934IBM Content Navigator 3.0.CD could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to vie...4.3
- CVE-2020-4757IBM FileNet Content Manager and IBM Content Navigator 3.0.CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte...6.4
- CVE-2020-4760IBM Content Navigator 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentia...5.4
- CVE-2020-4704IBM Content Navigator 3.0CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p...5.4
Product grouping is registry-driven, with AI assist and human review. How it works