Known vulnerabilities in QRadar Threat Intelligence

Software CPE: cpe:2.3:a:ibm_corporation:qradar_threat_intelligence:*:*:*:*:*:*:*:*
Total vulnerabilities: 79
Public exploits: 10
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting QRadar Threat Intelligence QRadar Threat Intelligence is affected by 79 known vulnerabilities: 6 high, 58 medium, 15 low Critical High Medium Low

Vulnerabilities (79)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU148470 - Allocation of Resources Without Limits or Throttling
CVE-2026-73089
CWE-770 Low
No
No
2.6.0 09.09.2026 SB2026090954
SB2026091423
SB2026091642
and 2 more
#VU148468 - Uncaught Exception
CVE-2026-73088
CWE-248 Low
No
No
2.6.0 09.09.2026 SB2026090952
SB2026091423
SB2026091642
and 2 more
#VU143925 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2026-33672
CWE-1321 Medium
No
No
2.6.0 18.08.2026 SB2026081815
SB2026081816
SB2026081831
and 4 more
#VU140701 - Interpretation Conflict
CVE-2026-18446
CWE-436 Medium
No
No
2.6.0 01.08.2026 SB2026080119
SB2026083172
SB2026083174
and 5 more
#VU139384 - Inefficient Regular Expression Complexity
CVE-2026-33671
CWE-1333 Medium
No
No
2.6.0 26.07.2026 SB2026072609
SB2026072616
SB2026081816
and 5 more
#VU139083 - Interpretation Conflict
CVE-2026-6322
CWE-436 Medium
No
No
2.6.0 22.07.2026 SB2026072227
SB2026072231
SB2026072232
and 17 more
#VU139082 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-6321
CWE-22 Medium
No
No
2.6.0 22.07.2026 SB2026072227
SB2026072228
SB2026072229
and 13 more
#VU139081 - Interpretation Conflict
CVE-2026-16221
CWE-436 Medium
No
No
2.6.0 22.07.2026 SB2026072226
SB2026083172
SB2026083174
and 5 more
#VU138918 - Interpretation Conflict
CVE-2026-13676
CWE-436 High
No
No
2.6.0 21.07.2026 SB2026072195
SB2026072237
SB2026072238
and 12 more
#VU131746 - NULL Pointer Dereference
CVE-2026-8723
CWE-476 Medium
No
No
2.6.0 18.05.2026 SB2026051892
SB2026061048
SB2026062221
and 7 more
#VU127594 - Permissive List of Allowed Inputs
CVE-2026-42043
CWE-183 Medium
No
No
2.6.0 24.04.2026 SB20260424169
SB2026061954
SB2026061999
and 12 more
#VU125803 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-4800
CWE-94 High
No
No
2.6.0 10.04.2026 SB2026041094
SB20260410101
SB20260410102
and 65 more
#VU123997 - Improper input validation
CVE-2026-2391
CWE-20 Medium
No
No
2.6.0 13.03.2026 SB2026031335
SB2026031336
SB2026032417
and 15 more
#VU123598 - Inefficient Regular Expression Complexity
CVE-2025-69873
CWE-1333 Low
No
No
2.6.0 06.03.2026 SB2026030610
SB2026030633
SB2026033162
and 10 more
#VU123140 - Inefficient Regular Expression Complexity
CVE-2026-26996
CWE-1333 Medium
No
No
2.6.0 23.02.2026 SB2026022345
SB2026030633
SB2026032328
and 35 more
#VU121159 - Resource exhaustion
CVE-2025-15284
CWE-400 Medium
No
No
2.6.0 12.01.2026 SB2026011229
SB2026011326
SB2026011926
and 39 more
#VU69942 - Incorrect Regular Expression
CVE-2022-3517
CWE-185 Medium
No
No
2.6.0 06.12.2022 SB2022120638
SB2022120639
SB2022120640
and 50 more
#VU69675 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24999
CWE-94 Medium
Available
No
2.6.0 29.11.2022 SB2022112910
SB2022112911
SB2022112943
and 50 more
#VU55498 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-15366
CWE-94 Medium
No
No
2.6.0 02.08.2021 SB2020071552
SB2021080213
SB2020120120
and 15 more
#VU53202 - Command injection
CVE-2021-23337
CWE-77 Medium
No
No
2.6.0 12.05.2021 SB2021021525
SB2021051230
SB2021062703
and 61 more


Showing elements 1 - 20 out of 79