GHSA-7pr3-cjqf-w984MediumCVSS 5.5

IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when...

Published
July 30, 2026
Last Modified
July 30, 2026

🔗 CVE IDs covered (1)

📋 Description

IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A privileged user could exploit this vulnerability to expose sensitive information or consume memory resources.

🔗 References (3)