CVE-2026-12085
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: psirt@us.ibm.com (Secondary)
Description
IBM UCD - IBM UrbanCode Deploy 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2.6, and 8.2 through 8.2.1.0 IBM DevOps Deploy could disclose sensitive configurations and secrets to authenticated users in API responses that could be used in further attacks against the system.
Affected (4)
Products: Ibm: Devops Deploy, Urbancode Deploy
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 8.0.0.0 to 8.0.1.14 | |
| From 7.3.0.0 to 7.3.2.19 |
References (1)
Timeline
No history available yet.