CVE-2025-36333
MEDIUMDescription
IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to perform unauthorized actions due to the improper enforcement of behavioral workflow.
Is your site exposed to CVE-2025-36333?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | watsonx.data_intelligence |
| ibm | software_hub |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-36333? +
How severe is CVE-2025-36333? +
What products are affected by CVE-2025-36333? +
How do I check if I'm vulnerable to CVE-2025-36333? +
Related Vulnerabilities
Our payment integration with GiroCheckout did not properly validate payment status responses. An attacker could use a successful payment status …
Our payment integration with Mollie did not properly validate payment status responses. An attacker could use a successful payment status …
Unexpected Status Code or Return Value vulnerability in ninenines gun (gun_http module) allows a malicious HTTP server to force the …
User Enumeration and Data Integrity in Barcode functionality in OpenText Content Management versions 24.3-25.1on Windows and Linux allows a malicous …
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a …
Fides is an open-source privacy engineering platform. From 2.75.0 to before 2.83.2, Fides deployments that enable both subject identity verification …