PT-2026-68198 · Ibm · Business Automation Workflow Containers/Traditional+1
CVE-2026-12730
·
Published
2026-08-05
·
Updated
2026-08-10
CVSS v3.1
3.8
Low
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Business Automation Workflow version 26.0.0
IBM Business Automation Workflow versions 25.0.0 through 25.0.0 Interim Fix 005
IBM Business Automation Workflow versions 24.0.1 through 24.0.1 Interim Fix 007
IBM Business Automation Workflow versions 24.0.0 through 24.0.0 Interim Fix 009
Description
IBM Business Automation Workflow fails to properly verify that the hostname matches the server certificate. This flaw could potentially allow connections to be established with a server controlled by an attacker.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Business Automation Workflow Containers/Traditional
Ibm Business Automation Workflow