Known vulnerabilities in Storage Sentinel Anomaly Scan Engine

Software CPE: cpe:2.3:a:ibm_corporation:storage_sentinel_anomaly_scan_engine:*:*:*:*:*:*:*:*
Total vulnerabilities: 37
Public exploits: 6
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Storage Sentinel Anomaly Scan Engine Storage Sentinel Anomaly Scan Engine is affected by 37 known vulnerabilities: 1 critical, 3 high, 19 medium, 14 low Critical High Medium Low

Vulnerabilities (37)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU124874 - Insufficient Verification of Data Authenticity
CVE-2026-26007
CWE-345 Medium
No
No
2.3.0 06.04.2026 SB2026040616
SB2026040617
SB2026040618
and 28 more
#VU124772 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-22029
CWE-79 Low
No
No
2.3.0 01.04.2026 SB2026040154
SB2026040164
SB2026041309
and 10 more
#VU122452 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-25639
CWE-754 Medium
Available
No
2.3.0 09.02.2026 SB2026020914
SB2026022201
SB2026022202
and 23 more
#VU121159 - Resource exhaustion
CVE-2025-15284
CWE-400 Medium
No
No
2.3.0 12.01.2026 SB2026011229
SB2026011326
SB2026011926
and 36 more
#VU121072 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-21441
CWE-409 Medium
No
No
2.3.0 07.01.2026 SB2026010780
SB2026011269
SB2026011328
and 89 more
#VU119231 - Resource exhaustion
CVE-2025-66471
CWE-400 Medium
No
No
2.3.0 05.12.2025 SB2025120581
SB2025121208
SB2026011313
and 88 more
#VU119230 - Allocation of Resources Without Limits or Throttling
CVE-2025-66418
CWE-770 Medium
No
No
2.3.0 05.12.2025 SB2025120581
SB2025121208
SB2025121938
and 93 more
#VU118198 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-54798
CWE-59 Low
No
No
1.1.12 07.11.2025 SB2025110743
SB2025110755
SB2025112543
and 9 more
#VU115167 - Allocation of Resources Without Limits or Throttling
CVE-2025-58754
CWE-770 Medium
Available
No
1.1.12 12.09.2025 SB2025091204
SB2025100104
SB2025100912
and 51 more
#VU113173 - Use of Insufficiently Random Values
CVE-2025-7783
CWE-330 Medium
Available
No
1.1.12 23.07.2025 SB2025072332
SB2025072333
SB2025081876
and 62 more
#VU112890 - Inefficient Regular Expression Complexity
CVE-2025-5889
CWE-1333 Low
No
No
1.1.12 15.07.2025 SB2025071511
SB2025071512
SB2025071513
and 33 more
#VU111979 - Protection Mechanism Failure
CVE-2025-50181
CWE-693 Low
No
No
1.1.12 26.06.2025 SB2025062659
SB2025062660
SB2025062662
and 54 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
1.1.12 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 193 more
#VU91109 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-5585
CWE-78 Medium
No
No
- 05.06.2024 SB2024060501
SB2024060502
SB2024060503
and 8 more
#VU91107 - Improper input validation
CVE-2024-5458
CWE-20 Medium
No
No
- 05.06.2024 SB2024060501
SB2024060502
SB2024060503
and 18 more
#VU89862 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-35226
CWE-94 High
No
No
1.1.12 29.05.2024 SB2024052913
SB20241210108
SB2024121303
and 3 more
#VU88483 - Security Features
CVE-2024-2756
CWE-254 Low
No
No
- 11.04.2024 SB2024041173
SB2024041175
SB2024041176
and 24 more
#VU88482 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-1874
CWE-78 Medium
Available
No
- 11.04.2024 SB2024041173
SB2024041175
SB2024041176
and 7 more
#VU85747 - Observable discrepancy
CVE-2023-52323
CWE-203 Low
No
No
1.1.12 24.01.2024 SB2024012414
SB2024012416
SB2024022053
and 24 more
#VU74151 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-28447
CWE-79 Low
No
No
1.1.12 29.03.2023 SB2023032901
SB20230818172
SB20230818173
and 7 more


Showing elements 1 - 20 out of 37