PT-2026-68198 · Ibm · Business Automation Workflow Containers/Traditional+1

CVE-2026-12730

·

Published

2026-08-05

·

Updated

2026-08-10

CVSS v3.1

3.8

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Business Automation Workflow version 26.0.0 IBM Business Automation Workflow versions 25.0.0 through 25.0.0 Interim Fix 005 IBM Business Automation Workflow versions 24.0.1 through 24.0.1 Interim Fix 007 IBM Business Automation Workflow versions 24.0.0 through 24.0.0 Interim Fix 009
Description IBM Business Automation Workflow fails to properly verify that the hostname matches the server certificate. This flaw could potentially allow connections to be established with a server controlled by an attacker.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-12730

Affected Products

Business Automation Workflow Containers/Traditional
Ibm Business Automation Workflow