Metrics
Affected Vendors & Products
No advisories yet.
Solution
Affected Product(s)Version(s)Remediation / FixIBM Business Automation Workflow containersV25.0.0 - V25.0.0-IF002Apply 25.0.0-IF003 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-containers-25000-interim-fixes IBM Business Automation Workflow containersV24.0.1 - V24.0.1-IF005Apply 24.0.1-IF006 https://www.ibm.com/support/pages/node/7183042 IBM Business Automation Workflow containersV24.0.0 - V24.0.0-IF006Apply 24.0.0-IF007 https://www.ibm.com/support/pages/node/7159792
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7256777 |
|
Tue, 20 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Business Automation Workflow containers 25.0.0 through 25.0.0 Interim Fix 002, 24.0.1 through 24.0.1 Interim Fix 005, and 24.0.0 through 24.0.0 Interim Fix 006. IBM Cloud Pak for Business Automation and IBM Business Automation Workflow containers may disclose sensitve configuration information in a config map. | |
| Title | Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025 | |
| First Time appeared |
Ibm
Ibm business Automation Workflow Containers |
|
| Weaknesses | CWE-538 | |
| CPEs | cpe:2.3:a:ibm:business_automation_workflow_containers:24.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers:24.0.0:interim_fix_006:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers:24.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers:24.0.1:interim_fix_005:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers:25.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers:25.0.0:interim_fix_002:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm business Automation Workflow Containers |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-01-20T15:53:20.326Z
Reserved: 2025-04-15T21:16:11.325Z
Link: CVE-2025-36058
Updated: 2026-01-20T15:53:13.128Z
Status : Received
Published: 2026-01-20T16:16:02.743
Modified: 2026-01-20T16:16:02.743
Link: CVE-2025-36058
No data.
OpenCVE Enrichment
No data.