Skip to main content

Vendor/product archive

ibm / engineering_workflow_management CVEs

Beta · best-effort

48 CVEs tagged to ibm / engineering_workflow_management0 Critical, 4 High, 44 Medium, 0 Low, 0 Unrated.

CVE-2024-51454

Published Jun 22, 2026

IBM Engineering Workflow Management 7.0.2 through 7.0.2 Interim Fix 035, 7.0.3 through 7.0.3 Interim Fix 017, and 7.1 through 7.1 Interim Fix 004 is vulnerable to HTTP header inje…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-33128

Published Jun 22, 2026

IBM Engineering Workflow Management 7.0.3 through 7.0.3 Interim Fix 020, and 7.1 through 7.1 Interim Fix 007 is vulnerable to cross-site scripting. This vulnerability allows an au…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29844

Published Oct 27, 2021

IBM Jazz Team Server products is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…

CVSS 8.8 · High

CVE-2021-29673

Published Oct 27, 2021

IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended f…

CVSS 5.4 · Medium

CVE-2021-20507

Published Jul 19, 2021

IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte…

CVSS 5.4 · Medium

CVE-2020-5031

Published Jul 19, 2021

IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte…

CVSS 5.4 · Medium

CVE-2021-20520

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20518

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20506

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20504

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20503

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20502

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose…

CVSS 7.1 · High

CVE-2021-20447

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20352

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20351

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium
Showing 1-25 of 48 CVEsPage 1 of 2