Sensitive Information Leakage in IBM UrbanCode Deploy and DevOps Deploy
CVE-2026-12086

6.2MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
30 June 2026

What is CVE-2026-12086?

IBM UrbanCode Deploy and DevOps Deploy versions store sensitive information in log files, which can be accessed by local users. This vulnerability poses a risk of data exposure, enabling unauthorized access to potentially confidential information.

Affected Version(s)

UCD - IBM DevOps Deploy 8.0 <= 8.0.1.13

UCD - IBM DevOps Deploy 8.1.0 <= 8.1.2.6

UCD - IBM DevOps Deploy 8.2.0 <= 8.2.1.0

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.