PatchSiren cyber security CVE debrief
CVE-2025-36327 IBM CVE debrief
IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0 are affected by a vulnerability allowing authenticated users to bypass security controls and perform unauthorized actions due to client-side enforcement of server-side security. Defenders should assess exposure and prioritize remediation, focusing on verifying and remediating affected versions to prevent unauthorized actions. This involves reviewing vendor guidance, implementing additional security controls, and monitoring for suspicious activity.
- Vendor
- IBM
- Product
- watsonx.data intelligence
- CVSS
- MEDIUM 6.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-06-30
- Original CVE updated
- 2026-09-29
- Advisory published
- 2026-06-30
- Advisory updated
- 2026-09-29
Who should care
Defenders responsible for IBM watsonx.data intelligence instances should assess exposure and prioritize remediation. This includes verifying and remediating affected versions, implementing additional security controls, and monitoring for suspicious activity to prevent unauthorized actions. Security teams and vulnerability management teams should focus on reviewing vendor guidance and ensuring proper mitigations are
Why it matters
Defenders should prioritize verifying and remediating this vulnerability in IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0 to prevent unauthorized actions.
- Verify and remediate affected versions to prevent unauthorized actions
- Implement additional security controls to prevent similar vulnerabilities
- Monitor for suspicious activity in IBM watsonx.data intelligence instances
Technical summary
The vulnerability in IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0 allows an authenticated user to bypass security controls and perform unauthorized actions due to client-side enforcement of server-side security. This issue can be addressed by verifying and remediating affected versions, implementing additional security controls, and monitoring for suspicious activity.
Defensive priority
Defenders should prioritize verifying and remediating this vulnerability in IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0.
Recommended defensive actions
- Verify and remediate IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0
- Implement additional security controls to prevent unauthorized actions
- Monitor for suspicious activity in IBM watsonx.data intelligence instances
Evidence notes
The CVE record and NVD entry provide details on the vulnerability, including its description, CVSS score, and affected versions. The vulnerability allows an authenticated user to bypass security controls and perform unauthorized actions due to client-side enforcement of server-side security in IBM watsonx.data intelligence versions 5.2.0, 5.2.1, 5.2.2, and 5.3.0. Evidence is limited to CVE and NVD information; further verification is needed to confirm affected scope and severity.
Sources and references
Verified primary and authoritative sources
-
CVE-2025-36327 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2025-36327
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2025-36327 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2025-36327
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://www.ibm.com/support/pages/node/7277801
[email protected] - Vendor Advisory
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.