Known vulnerabilities in Knowledge Catalog Premium Cartridge

Software CPE: cpe:2.3:a:ibm_corporation:knowledge_catalog_premium_cartridge:*:*:*:*:*:*:*:*
Total vulnerabilities: 52
Public exploits: 5
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Knowledge Catalog Premium Cartridge Knowledge Catalog Premium Cartridge is affected by 52 known vulnerabilities: 1 critical, 7 high, 27 medium, 17 low Critical High Medium Low

Vulnerabilities (52)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU124049 - Memory corruption
CVE-2025-2148
CWE-119 Low
No
No
5.2 17.03.2026 SB2026031706
SB2026031707
SB2026051435
#VU124048 - Improper Initialization
CVE-2025-2149
CWE-665 Low
No
No
5.2 17.03.2026 SB2026031705
SB2026031707
SB2026051435
#VU116606 - Information Exposure Through an Error Message
CVE-2025-49128
CWE-209 Low
No
No
5.2 06.10.2025 SB2025100621
SB2025100622
SB20251022103
and 7 more
#VU114392 - Improper Handling of Unexpected Data Type
CVE-2025-7339
CWE-241 Low
No
No
5.2 22.08.2025 SB2025082222
SB2025091525
SB2025091621
and 18 more
#VU114312 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-48050
CWE-22 High
No
No
5.2 20.08.2025 SB20250820123
SB20250820124
SB20250820125
and 15 more
#VU109002 - Improper Resource Shutdown or Release
CVE-2025-3730
CWE-404 Low
No
No
5.2 13.05.2025 SB2025051310
SB2025051311
SB2025103008
and 2 more
#VU108124 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-43859
CWE-444 Medium
No
No
5.2 02.05.2025 SB2025050214
SB2025050215
SB2025050216
and 24 more
#VU107638 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-1302
CWE-94 Critical
Available
No
5.2 22.04.2025 SB2025042218
SB2025042219
SB2025050906
and 8 more
#VU105984 - Inefficient Regular Expression Complexity
CVE-2025-27789
CWE-1333 Low
No
No
5.2 24.03.2025 SB2025032476
SB2025041020
SB2025041691
and 44 more
#VU105452 - Server-Side Request Forgery (SSRF)
CVE-2025-27152
CWE-918 Medium
Available
No
5.2 07.03.2025 SB2025030777
SB2025031918
SB2025032417
and 42 more
#VU103771 - Improper Authentication
CVE-2024-12797
CWE-287 Medium
No
No
5.2 11.02.2025 SB2025021187
SB20250211108
SB20250211159
and 58 more
#VU102463 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-55565
CWE-835 Medium
No
No
5.2 08.01.2025 SB2025010849
SB2025010851
SB2025010853
and 45 more
#VU101895 - Inefficient Regular Expression Complexity
CVE-2024-52798
CWE-1333 Low
No
No
5.2 23.12.2024 SB2024122305
SB2024122309
SB2025011306
and 45 more
#VU100117 - Improper input validation
CVE-2024-21534
CWE-20 High
Available
No
5.2 08.11.2024 SB2024110840
SB2024110841
SB2024111516
and 17 more
#VU98796 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-38819
CWE-22 Medium
Available
No
5.2 17.10.2024 SB2024101781
SB2024112849
SB2024120331
and 54 more
#VU98132 - Inefficient Regular Expression Complexity
CVE-2024-45296
CWE-1333 Low
No
No
5.2 08.10.2024 SB2024100822
SB2024100823
SB2024100826
and 87 more
#VU97224 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-38816
CWE-22 Medium
Available
No
5.2 12.09.2024 SB2024091290
SB20241014121
SB20241015124
and 24 more
#VU96050 - Server-Side Request Forgery (SSRF)
CVE-2024-39338
CWE-918 Medium
No
No
5.2 15.08.2024 SB2024081543
SB2024090326
SB2024090446
and 63 more
#VU87779 - Exposure of sensitive information to an unauthorized actor
CVE-2024-29025
CWE-200 Medium
No
No
5.2 25.03.2024 SB2024032532
SB2024040230
SB2024042995
and 95 more
#VU47481 - Improper input validation
CVE-2020-13956
CWE-20 Medium
No
No
5.2 09.10.2020 SB2020100902
SB2020101604
SB2021042104
and 77 more


Showing elements 1 - 20 out of 52