← Back to CVE List
CVE-2026-16432NVD
Vulnerability Summary
IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage PxXMLInput operator could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection.
CVSS v3.1 Base Metrics — Score 7.7 (HIGH)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeChanged
ConfidentialityHigh
IntegrityNone
AvailabilityNone
Affected & Patched Versions
- IBM DataStage on Cloud Pak for Data >= 5.4.0.0
Not provided by cveorg for this CVE.