Known vulnerabilities in watsonx Code Assistant IDE Extensions
Vendor:
IBM Corporation
Software:
watsonx Code Assistant IDE Extensions
Software CPE:
cpe:2.3:a:ibm_corporation:watsonx_code_assistant_ide_extensions:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU116130 - Improper input validation CVE-2025-9288 |
CWE-20 | Medium | 1.9.3 | 26.09.2025 |
SB2025092616 SB2025092618 SB2025092620 and 17 more |
||
| #VU115167 - Allocation of Resources Without Limits or Throttling CVE-2025-58754 |
CWE-770 | Medium | 1.9.3 | 12.09.2025 |
SB2025091204 SB2025100104 SB2025100912 and 51 more |
||
| #VU107489 - Improper Control of Generation of Code ('Code Injection') CVE-2024-53382 |
CWE-94 | Low | 5.2 | 16.04.2025 |
SB2025041637 SB2025041638 SB2025043033 and 8 more |