Known vulnerabilities in DevOps Test Performance

Software CPE: cpe:2.3:a:ibm_corporation:devops_test_performance:*:*:*:*:*:*:*:*
Total vulnerabilities: 66
Public exploits: 5
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting DevOps Test Performance DevOps Test Performance is affected by 66 known vulnerabilities: 4 high, 53 medium, 9 low Critical High Medium Low

Vulnerabilities (66)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131339 - Exposure of sensitive information to an unauthorized actor
CVE-2026-45300
CWE-200 Medium
No
No
11.0.8 13.05.2026 SB2026051366
SB2026061059
#VU130216 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2026-41417
CWE-93 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026051351
SB2026051901
and 8 more
#VU130215 - Resource exhaustion
CVE-2026-42587
CWE-400 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 16 more
#VU130214 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42581
CWE-444 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 15 more
#VU130212 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2026-42578
CWE-113 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026051907
SB20260528254
and 8 more
#VU130211 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42580
CWE-444 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 7 more
#VU130210 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42585
CWE-444 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 15 more
#VU130206 - Allocation of Resources Without Limits or Throttling
CVE-2026-42583
CWE-770 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052039
SB20260528254
and 12 more
#VU130205 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42584
CWE-444 Medium
No
No
11.0.8 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 15 more
#VU126856 - Inefficient Regular Expression Complexity
CVE-2026-4867
CWE-1333 Low
No
No
11.0.8 22.04.2026 SB20260422207
SB20260422208
SB2026052938
and 7 more
#VU126561 - Permissive List of Allowed Inputs
CVE-2026-41240
CWE-183 Low
No
No
11.0.8 20.04.2026 SB2026041630
SB2026042938
SB2026060221
and 9 more
#VU126560 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-41239
CWE-79 Medium
No
No
11.0.8 20.04.2026 SB2026041630
SB2026042938
SB2026060221
and 5 more
#VU126559 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2026-41238
CWE-1321 Medium
No
No
11.0.8 20.04.2026 SB2026041630
SB2026042938
SB2026060221
and 4 more
#VU114392 - Improper Handling of Unexpected Data Type
CVE-2025-7339
CWE-241 Low
No
No
11.0.8 22.08.2025 SB2025082222
SB2025091525
SB2025091621
and 18 more
#VU80791 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-40167
CWE-444 Medium
No
No
11.0.8 14.09.2023 SB2023091440
SB2023092933
SB2023101760
and 68 more
#VU75217 - Improper input validation
CVE-2023-26049
CWE-20 Low
No
No
11.0.8 18.04.2023 SB2023041842
SB2023051821
SB2023060836
and 78 more
#VU54394 - Incorrect Regular Expression
CVE-2020-28500
CWE-185 Medium
No
No
11.0.8 27.06.2021 SB2021062702
SB2021062703
SB2021090905
and 30 more
#VU41989 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8203
CWE-94 Medium
No
No
11.0.8 10.08.2020 SB2020071548
SB2020122111
SB2021042308
and 31 more
#VU21764 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-10744
CWE-94 Medium
No
No
11.0.8 14.10.2019 SB2019072612
SB2021012219
SB2022061803
and 14 more
#VU19282 - Resource exhaustion
CVE-2019-1010266
CWE-400 Medium
No
No
11.0.8 22.07.2019 SB2019020111
SB2022062806
SB2022101801
and 8 more


Showing elements 1 - 20 out of 66