Information Disclosure Vulnerability in IBM OpenPages by IBM
CVE-2025-27368
4.3MEDIUM
What is CVE-2025-27368?
IBM OpenPages versions 9.0 and 9.1 are susceptible to an information disclosure vulnerability stemming from inadequate security measures for certain REST endpoints. This flaw allows authenticated users to access sensitive system metadata that they should not be able to view, potentially compromising data confidentiality and user privacy.
Affected Version(s)
OpenPages 9.0
OpenPages 9.1