VYPR

Transformation Advisor

by IBM

CVEs (2)

  • CVE-2025-36193HigSep 3, 2025
    risk 0.55cvss 8.4epss 0.00

    IBM Transformation Advisor 2.0.1 through 4.3.1 incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Transformation Advisor Operator Catalog image.

  • CVE-2022-41299MedDec 9, 2022
    risk 0.29cvss 4.4epss 0.00

    IBM Cloud Transformation Advisor 2.0.1 through 3.3.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted…