CRITICALVulnerability
Verified
Global
NVD CRITICAL: CVE-2026-13449 — IBM Business Automation Manager Open Editions 9.0.0 through 9.4.2 is vulnerable ...
·Source: NIST NVD
Updated:
Executive Summary
IBM Business Automation Manager Open Editions 9.0.0 through 9.4.2 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
Analysis
IBM Business Automation Manager Open Editions 9.0.0 through 9.4.2 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. CVSS Score: 7.6. Published: 2026-06-30T20:17:28.820.