Skip to main content

Vendor/product archive

ibm / application_gateway CVEs

Beta · best-effort

7 CVEs tagged to ibm / application_gateway0 Critical, 2 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2025-36397

Published Jan 20, 2026

IBM Application Gateway 23.10 through 25.09 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-36396

Published Jan 20, 2026

IBM Application Gateway 23.10 through 25.09 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-45655

Published Jun 3, 2025

IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22387

Published Sep 28, 2022

IBM Application Gateway is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended function…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1