Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-36072


IBM webMethods Integration 10.11 through 10.11_Core_Fix22, 10.15 through 10.15_Core_Fix22, and 11.1 through 11.1_Core_Fix6 IBM webMethods Integration allow an authenticated user to execute arbitrary code on the system, caused by the deserialization of untrusted object graphs data.


Published

2025-11-20T23:15:51.527

Last Modified

2025-12-15T14:44:46.233

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-502

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm webmethods_integration 10.11 Yes
Application ibm webmethods_integration 10.11 Yes
Application ibm webmethods_integration 10.15 Yes
Application ibm webmethods_integration 10.15 Yes
Application ibm webmethods_integration 11.1 Yes
Application ibm webmethods_integration 11.1 Yes

References