Sensitive Information Exposure in IBM Enterprise Records
CVE-2026-81859

6.2MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
4 September 2026

What is CVE-2026-81859?

IBM Enterprise Records may be susceptible to a security flaw that allows local attackers to access sensitive data due to the implementation of a flawed or risky cryptographic algorithm. This vulnerability can potentially compromise the confidentiality of crucial information, emphasizing the need for immediate remediation and adherence to secure coding practices.

Affected Version(s)

Cloud Pak for Business Automation 26.0.0 <= 26.0.0 Interim Fix 001

Cloud Pak for Business Automation 25.0.0 <= 25.0.0 Interim Fix 005

Cloud Pak for Business Automation 24.0.1 <= 24.0.1 Interim Fix 008

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Vinayachandran.Sasidharan@ibm.com
.