Sensitive User Credential Disclosure in IBM Storage Defender by IBM
CVE-2025-64650
6.5MEDIUM
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 8 December 2025
What is CVE-2025-64650?
IBM Storage Defender's Resiliency Service versions 2.0.0 through 2.0.18 are susceptible to a vulnerability that may lead to sensitive user credentials being disclosed in log files. This oversight can expose critical information and compromise the security of user accounts. It is imperative for users of the affected versions to apply available patches promptly to mitigate risks. For detailed information and fixes, consult the advisory from IBM.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Storage Defender - Resiliency Service 2.0.0 <= 2.0.18