Known Vulnerabilities for Cloud Pak For Automation by Ibm
Listed below are 7 of the newest known vulnerabilities associated with "Cloud Pak For Automation" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76369 json | In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outside the intended Automatio... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-76365 json | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structur... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76364 json | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structur... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76363 json | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" role could run arbitrary Structured Query Lan... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-73297 json | Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, _is_blocked_ip i... | Not Provided | 2026-08-12 | 2026-08-12 |
| CVE-2026-73082 json | Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the POST /api/v1/projects/:projectId/mcp-ser... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-67530 json | WACRM is a self-hostable CRM template for WhatsApp. In 0.7.0 and earlier, the automation send_webhook action in src/lib/autom... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-54353 json | Budibase is an open-source low-code platform. Prior to 3.39.9, authenticated users with automation permissions can bypass Bud... | Not Provided | 2026-06-26 | 2026-06-29 |
| CVE-2026-48146 json | Budibase is an open-source low-code platform. Prior to 3.39.0, the OAuth2 token fetch function in packages/server/src/sdk/wor... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-35219 json | Budibase is an open-source low-code platform. Prior to 3.41.3, automation steps in packages/server/src/automations/steps/outg... | Not Provided | 2026-08-17 | 2026-08-18 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Cloud Pak For Automation | 20.0.3 | |||
| Application | Ibm | Cloud Pak For Automation | 20.0.2 | |||
| Application | Ibm | Cloud Pak For Automation | 20.0.1 | |||
| Application | Ibm | Cloud Pak For Automation | 19.0.3 | |||
| Application | Ibm | Cloud Pak For Automation | 19.0.2 | |||
| Application | Ibm | Cloud Pak For Automation | 19.0.1 |