Arbitrary Command Execution Vulnerability in IBM DataStage on Cloud Pak for Data
CVE-2025-13686
6.3MEDIUM
What is CVE-2025-13686?
IBM DataStage on Cloud Pak for Data versions 5.1.2 through 5.3.0 is vulnerable to a security flaw that permits an authenticated user to execute arbitrary commands with standard user privileges. This issue arises from a failure to properly validate user-supplied input within the job subroutine component, creating a potential pathway for exploitation. Organizations using these versions should take immediate action to assess their systems and apply available security patches.
Affected Version(s)
DataStage on Cloud Pak for Data 5.1.2 <= 5.3.0