Back

MEDIUM

IBM Cognos Analytics versions 12.0.4 and 12.1.3 is affected by security vulnerabilities

Published Sep 18, 2026

Description

IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4 through 12.0.4 FP2 stores sensitive information in source code could be used by an authenticated user in further attacks against the system.

Affected products

Remediation

Vendor solution

IBM strongly recommends addressing the vulnerability now.

Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3 FP1 12.1.3 FP2 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.0.4 - 12.0.4 FP2 12.0.4 FP3 https://www.ibm.com/support/pages/node/7269268

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Sep 18, 2026
Updated Sep 18, 2026
Reserved Apr 15, 2025
CISA Vulnrichment
Updated Sep 18, 2026
NVD
Status Awaiting Analysis
Modified Sep 18, 2026
Red Hat
Severity n/a
Public date n/a