Unrated severityNVD Advisory· Published Nov 12, 2025· Updated Nov 12, 2025
IBM OpenPages Information Disclosure
CVE-2025-27368
Description
IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.
Affected products
2- IBM/OpenPagesv5cpe:2.3:a:ibm:openpages:9.1:*:*:*:*:*:*:*Range: 9.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.ibm.com/support/pages/node/7250238mitrevendor-advisorypatch
News mentions
0No linked articles in our index yet.