CVE-2025-36333
IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to perform unauthorized actions due to the improper enforcement of behavioral workflow.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 4.3
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
- EPSS probability
- 0.28%
- CWE
- CWE-841
- Published
- 2026-06-30
- Last modified
- 2026-07-01
Affected products
- IBM watsonx.data intelligence
Weakness type
Related vulnerabilities
- CVE-2026-87503 — Inappropriate implementation in Downloads in Google Chrome on on Android prior to 153.0.8010.36...
- CVE-2026-53637 — Sylius: Cart FormComponent allows modification or deletion of an already-completed order
- CVE-2026-67279 — SSH Pre-Authentication Rekey State Bypass in MikroTik RouterOS
- CVE-2026-82423 — macrozheng mall Payment Status Endpoint paySuccess behavioral workflow
- CVE-2026-55763 — Klever-Go: Percentage-transfer royalty skips the source debit at exactly-100% splits
- CVE-2026-78103 — Dimension Log Server Configuration Lock Bypass Vulnerability
- CVE-2026-78618 — Dimension Business Logic Flaw Allows Chained Backend Object Operations
- CVE-2026-77508 — Weblate: Unverified REST API email changes