IBM ICS Security Advisories
34 CISA ICS-CERT advisories published for IBM industrial control system products. Data updated every 2 hours.
7
Critical
9
High
12
Medium
0
Low
| Severity | CVSS | Advisory | Products | Published |
|---|---|---|---|---|
| NONE | 0 |
IBM SPSS Modeler: Vulnerability allows Denial of Service
wid-sec-w-2026-1563
|
SPSS
|
2026-05-17 |
| NONE | 0 |
IBM App Connect Enterprise Certified Container (axios): Vulnerability allows Denial of Service
wid-sec-w-2026-1127 · 1 CVE
|
App Connect Enterprise,
App Connect Enterprise,
App Connect Enterprise
+1 more
|
2026-04-14 |
| NONE | 0 |
IBM DataPower Gateway: Vulnerability allows Denial of Service
wid-sec-w-2026-1039 · 1 CVE
|
DataPower Gateway,
DataPower Gateway,
DataPower Gateway
+3 more
|
2026-04-09 |
| NONE | 0 |
IBM Tivoli Network Manager: Multiple Vulnerabilities
wid-sec-w-2026-1032 · 18 CVEs
|
Tivoli Network Manager,
Tivoli Network Manager
|
2026-04-08 |
| NONE | 0 |
IBM DataPower Gateway: Vulnerability allows Denial of Service
wid-sec-w-2026-1024 · 1 CVE
|
DataPower Gateway,
DataPower Gateway,
DataPower Gateway
+3 more
|
2026-04-08 |
| NONE | 0 |
IBM App Connect Enterprise: Multiple Vulnerabilities
wid-sec-w-2026-1007 · 43 CVEs
|
|
2026-04-07 |
| MEDIUM | 6.9 |
IBM Maximo Asset Management: Vulnerability allows Denial of Service
wid-sec-w-2026-0965 · 1 CVE
|
Maximo Asset Management,
Maximo Asset Management
|
2026-04-06 |
| CRITICAL | 9.3 |
IBM Security Verify Access: Multiple Vulnerabilities
wid-sec-w-2026-0949 · 16 CVEs
|
Security Verify Access,
Security Verify Access
|
2026-03-31 |
| MEDIUM | 6.3 |
IBM DataPower Gateway: Vulnerability allows Denial of Service
wid-sec-w-2026-0943 · 1 CVE
|
DataPower Gateway,
DataPower Gateway,
DataPower Gateway
+3 more
|
2026-03-31 |
| HIGH | 7.5 |
IBM App Connect Enterprise (Hono and Undici): Multiple Vulnerabilities
wid-sec-w-2026-0933 · 9 CVEs
|
App Connect Enterprise,
App Connect Enterprise
|
2026-03-30 |
| MEDIUM | 6.9 |
IBM Semeru Runtime: Vulnerability allows Code execution
wid-sec-w-2026-0929 · 1 CVE
|
DB2,
Semeru Runtime,
Semeru Runtime
+3 more
|
2026-03-30 |
| MEDIUM | 6.5 |
IBM DataPower Gateway: Multiple Vulnerabilities
wid-sec-w-2026-0924 · 2 CVEs
|
DataPower Gateway,
DataPower Gateway,
DataPower Gateway
+5 more
|
2026-03-30 |
| MEDIUM | 4.1 |
IBM DataPower Gateway: Vulnerability allows Offenlegung from Informationen
wid-sec-w-2026-0906 · 1 CVE
|
DataPower Gateway,
DataPower Gateway,
DataPower Gateway
+3 more
|
2026-03-29 |
| HIGH | 8.7 |
IBM App Connect Enterprise: Multiple Vulnerabilities allow Denial of Service
wid-sec-w-2026-0903 · 3 CVEs
|
App Connect Enterprise,
App Connect Enterprise,
App Connect Enterprise
+5 more
|
2026-03-29 |
| CRITICAL | 9.2 |
IBM App Connect Enterprise: Multiple Vulnerabilities
wid-sec-w-2026-0895 · 4 CVEs
|
App Connect Enterprise,
App Connect Enterprise,
App Connect Enterprise
+3 more
|
2026-03-26 |
| HIGH | 7.5 |
IBM License Metric Tool: Multiple Vulnerabilities
wid-sec-w-2026-0881 · 4 CVEs
|
License Metric Tool,
License Metric Tool
|
2026-03-25 |
| CRITICAL | 9.4 |
IBM Operational Decision Manager: Multiple Vulnerabilities
wid-sec-w-2026-0871 · 3 CVEs
|
Operational Decision Manager,
Operational Decision Manager,
Operational Decision Manager
+7 more
|
2026-03-25 |
| MEDIUM | 6.5 |
IBM InfoSphere Information Server: Vulnerability allows Umgehen from Sicherheitsvorkehrungen
wid-sec-w-2026-0867 · 1 CVE
|
InfoSphere Information Server,
InfoSphere Information Server
|
2026-03-25 |
| HIGH | 8.2 |
IBM InfoSphere Information Server: Multiple Vulnerabilities
wid-sec-w-2026-0851 · 14 CVEs
|
InfoSphere Information Server
|
2026-03-24 |
| HIGH | 8.7 |
IBM WebSphere Application Server Liberty: Multiple Vulnerabilities
wid-sec-w-2026-0845 · 4 CVEs
|
DataPower Gateway,
DataPower Gateway,
WebSphere Application Server
+6 more
|
2026-03-24 |
| CRITICAL | 9.8 |
IBM QRadar SIEM: Multiple Vulnerabilities
wid-sec-w-2026-0783 · 59 CVEs
|
QRadar SIEM,
QRadar SIEM
|
2026-03-18 |
| CRITICAL | 9.3 |
IBM App Connect Enterprise (fast-xml-parser): Multiple Vulnerabilities
wid-sec-w-2026-0772 · 2 CVEs
|
App Connect Enterprise,
App Connect Enterprise,
App Connect Enterprise
+5 more
|
2026-03-17 |
| HIGH | 7.5 |
IBM Planning Analytics: Multiple Vulnerabilities
wid-sec-w-2026-0759 · 6 CVEs
|
Planning Analytics,
Planning Analytics
|
2026-03-17 |
| HIGH | 8.7 |
IBM SPSS: Multiple Vulnerabilities
wid-sec-w-2026-0752 · 9 CVEs
|
SPSS,
SPSS
|
2026-03-16 |
| MEDIUM | 4.0 |
libexpat: Multiple Vulnerabilities allow Denial of Service
wid-sec-w-2026-0733 · 3 CVEs
|
Business Automation Workflow,
Business Automation Workflow,
HTTP Server
+3 more
|
2026-03-15 |
| MEDIUM | 5.1 |
IBM App Connect Enterprise: Vulnerability allows Cross-Site Scripting
wid-sec-w-2026-0710 · 1 CVE
|
App Connect Enterprise,
App Connect Enterprise,
App Connect Enterprise
+5 more
|
2026-03-12 |
| MEDIUM | 4.4 |
IBM Planning Analytics: Vulnerability allows Offenlegung from Informationen
wid-sec-w-2026-0642 · 1 CVE
|
Planning Analytics,
Planning Analytics
|
2026-03-09 |
| MEDIUM | 5.9 |
IBM MQ: Vulnerability allows Offenlegung from Informationen
wid-sec-w-2026-0584 · 1 CVE
|
MQ,
MQ
|
2026-03-03 |
| HIGH | 7.1 |
IBM InfoSphere Information Server: Vulnerability allows Offenlegung from Informationen
wid-sec-w-2026-0578 · 1 CVE
|
InfoSphere Information Server,
InfoSphere Information Server
|
2026-03-03 |
| HIGH | 7.1 |
IBM App Connect Enterprise: Multiple Vulnerabilities
wid-sec-w-2026-0574 · 7 CVEs
|
|
2026-03-02 |
| MEDIUM | 6.6 |
IBM Storage Scale: Vulnerability allows Umgehen from Sicherheitsvorkehrungen
wid-sec-w-2026-0567 · 1 CVE
|
Storage Scale,
Storage Scale,
Storage Scale
+1 more
|
2026-03-02 |
| CRITICAL | 9.8 |
IBM Rational Build Forge: Multiple Vulnerabilities
wid-sec-w-2026-0559 · 15 CVEs
|
Rational Build Forge,
Rational Build Forge
|
2026-03-01 |
| MEDIUM | 5.0 |
IBM MQ: Vulnerability allows Umgehen from Sicherheitsvorkehrungen
wid-sec-w-2026-0547 · 1 CVE
|
MQ,
MQ,
MQ
+7 more
|
2026-02-26 |
| CRITICAL | 9.8 |
IBM QRadar SIEM: Multiple Vulnerabilities
wid-sec-w-2026-0544 · 11 CVEs
|
QRadar SIEM,
QRadar SIEM
|
2026-02-26 |
Get IBM Vulnerability Alerts
Don't check manually — OTWarden emails you when CISA publishes new IBM ICS advisories, filtered to your specific equipment.
Start 14-Day Free Trial →