Devops Plan
IBM · 3 CVEs
CVE-2026-4096
MEDIUM
A vulnerability has been identified in IBM DevOps Plan that allows a Host Header Injection attack due to improper handl…
Jun 11, 2026
CVE-2025-36363
HIGH
IBM DevOps Plan is vulnerable to Excessive Authentication Attempts
Mar 3, 2026
CVE-2025-36364
MEDIUM
IBM DevOps Plan REST APIs are vulnerable to exposure of sensitive data through request query parameters.
Mar 3, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-4096 | A vulnerability has been identified in IBM DevOps Plan that allows a Host Header Injection attack due to improper handling of the Host header in HTTP requests. | MEDIUM | 0.25% | Jun 11, 2026 |
| CVE-2025-36363 | IBM DevOps Plan is vulnerable to Excessive Authentication Attempts | HIGH | 0.25% | Mar 3, 2026 |
| CVE-2025-36364 | IBM DevOps Plan REST APIs are vulnerable to exposure of sensitive data through request query parameters. | MEDIUM | 0.11% | Mar 3, 2026 |
Showing 1 to 3 of 3 CVEs