Infosphere Information Server
199 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Infosphere Information Server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Infosphere Information Server CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 4 |
| 2025-01 | 2 |
| 2025-02 | 0 |
| 2025-03 | 5 |
| 2025-04 | 3 |
| 2025-05 | 1 |
| 2025-06 | 5 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 1 |
| 2025-10 | 1 |
| 2025-11 | 1 |
| 2025-12 | 1 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 16 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 1 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 199 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical9
- High40
- Medium133
- Low17
Latest CVEs
The 15 most recently published vulnerabilities affecting Infosphere Information Server.
- CVE-2026-9836IBM DataStage Flow Designer application is affected by an information disclosure vulnerability3.5
- CVE-2025-14807IBM InfoSphere Information Server is vulnerable to HTTP header injection6.5
- CVE-2026-1015IBM InfoSphere Information Server is vulnerable to server-side request forgery5.4
- CVE-2026-1014IBM InfoSphere Information Server is vulnerable due to disclosure of sensitive information6.5
- CVE-2026-2483IBM InfoSphere Information Server Cross-Site Scripting5.4
- CVE-2026-2484IBM InfoSphere Information Server Information Disclosure4.3
- CVE-2025-36422IBM InfoSphere Information Server is vulnerable to cross-site request forgery4.3
- CVE-2025-36258IBM InfoSphere Information Server is vulnerable due to plaintext storage of a password7.1
- CVE-2026-2485IBM InfoSphere Information Server Cross-Site Scripting4.8
- CVE-2025-14974IBM InfoSphere Information Server is vulnerable due to Insecure Direct Object Reference5.7
- CVE-2026-1262IBM InfoSphere Information Server Information Disclosure4.3
- CVE-2025-14912IBM InfoSphere Information Server is vulnerable to server-side request forgery5.4
- CVE-2025-14810IBM InfoSphere Information Server is vulnerable due to insufficient session expiration6.3
- CVE-2025-14808IBM InfoSphere Information Server is vulnerable due to disclosure of sensitive information3.1
- CVE-2025-14790IBM InfoSphere Information Server is vulnerable to disclosure of sensitive information6.5
Product grouping is registry-driven, with AI assist and human review. How it works