Path Traversal Vulnerability in IBM DataStage on Cloud Pak for Data
CVE-2026-16335

8.1HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
14 September 2026

What is CVE-2026-16335?

A path traversal vulnerability has been identified in IBM DataStage on Cloud Pak for Data 5.4.0.0 that could allow a remote authenticated attacker to perform unauthorized actions. This vulnerability would enable an attacker to read, write, or delete arbitrary files on the server, posing a significant risk to data integrity and confidentiality. It is crucial for users to apply the necessary patches provided by IBM to mitigate this issue effectively.

Affected Version(s)

DataStage on Cloud Pak for Data 5.4.0.0

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.