VYPR
Medium severity6.0NVD Advisory· Published May 1, 2025· Updated Jun 17, 2026

CVE-2025-1333

CVE-2025-1333

Description

IBM MQ Container when used with the IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, and MQ Operator SC2 3.2.0 through 3.2.10 and configured with Cloud Pak for Integration Keycloak could disclose sensitive information to a privileged user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • IBM/MQ Operatorcpe-rescue2 versions
    cpe:2.3:a:ibm:mq_operator:3.0.0:*:*:*:continuous_delivery:*:*:*+ 1 more
    • cpe:2.3:a:ibm:mq_operator:3.0.0:*:*:*:continuous_delivery:*:*:*range: 2.0.0 LTS
    • (no CPE)range: 2.0.0 - 2.0.29, 3.0.0 - 3.1.3, 3.3.0 - 3.5.1, 3.2.0 - 3.2.10
  • IBM/MQ Containerllm-create
    Range: 2.0.0 - 2.0.29, 3.0.0 - 3.1.3, 3.3.0 - 3.5.1, 3.2.0 - 3.2.10

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.

CVE-2025-1333 · Medium · VYPR