Known Vulnerabilities for Cognos Analytics by IBM
Listed below are 10 of the newest known vulnerabilities associated with "Cognos Analytics" by "IBM".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-15995 json | IBM Cognos Analytics 12.1.3 GA Version with build number through 12.1.3-2606251736 could allow an attacker to obtain incorrec... | Not Provided | 2026-07-17 | 2026-07-20 |
| CVE-2026-7884 json | IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4 through 12.0.4 FP2 allows a non-privileged user to edit their give... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2025-36126 json | Not Provided | 2026-05-26 | 2026-07-24 | |
| CVE-2025-36076 json | IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4 through 12.0.4 FP2 stores sensitive information in source code cou... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2025-33147 json | IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4 through 12.0.4 FP2 could allow an attacker on a shared network to ... | Not Provided | 2026-09-18 | 2026-09-21 |
| CVE-2025-3633 json | Not Provided | 2026-05-27 | 2026-06-02 | |
| CVE-2024-56344 json | IBM Cognos Analytics 12.0.4 through 12.0.4 FP2, and 12.1.0 through 12.1.3 FP1 could allow a remote attacker to obtain sensiti... | Not Provided | 2026-09-18 | 2026-09-19 |
| CVE-2023-35011 json | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to server-side request forgery (SSRF). This may allow an authen... | 5.4 - MEDIUM | 2023-08-16 | 2023-09-21 |
| CVE-2023-35009 json | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a remote attacker to obtain system information without authentica... | 5.3 - MEDIUM | 2023-08-16 | 2023-08-31 |
| CVE-2023-28530 json | IBM Cognos Analytics 11.1 and 11.2 is vulnerable to stored cross-site scripting, caused by improper validation of SVG Files i... | 5.4 - MEDIUM | 2023-07-22 | 2023-08-14 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Cognos Analytics | 11.1.7 | |||
| Application | Ibm | Cognos Analytics | 11.1.6 | |||
| Application | Ibm | Cognos Analytics | 11.1.5 | |||
| Application | Ibm | Cognos Analytics | 11.1.4 | |||
| Application | Ibm | Cognos Analytics | 11.1.3 | |||
| Application | Ibm | Cognos Analytics | 11.1.2 | |||
| Application | Ibm | Cognos Analytics | 11.1.1 | |||
| Application | Ibm | Cognos Analytics | 11.1.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.9 | |||
| Application | Ibm | Cognos Analytics | 11.0.8 | |||
| Application | Ibm | Cognos Analytics | 11.0.7.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.7 | |||
| Application | Ibm | Cognos Analytics | 11.0.6.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.6 | |||
| Application | Ibm | Cognos Analytics | 11.0.5.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.5 | |||
| Application | Ibm | Cognos Analytics | 11.0.4.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.4 | |||
| Application | Ibm | Cognos Analytics | 11.0.3.0 | |||
| Application | Ibm | Cognos Analytics | 11.0.3 |