Cross-Site Scripting Vulnerability in IBM Engineering Lifecycle Optimization
CVE-2024-52890
6.1MEDIUM
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 5 August 2025
What is CVE-2024-52890?
IBM Engineering Lifecycle Optimization - Publishing versions 7.0.2 and 7.0.3 are vulnerable to cross-site scripting attacks due to inadequate validation of URIs. This vulnerability may allow attackers to inject malicious scripts, compromising the integrity and security of users' sessions.
Affected Version(s)
IBM Engineering Lifecycle Optimization - Publishing 7.0.2
IBM Engineering Lifecycle Optimization - Publishing 7.0.3