Datapower Gateway 106cd IBM Datapower Gateway 106cd

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in IBM Datapower Gateway 106cd.

By the Year

In 2026 there have been 2 vulnerabilities in IBM Datapower Gateway 106cd with an average score of 5.3 out of ten.

Year Vulnerabilities Average Score
2026 2 5.30

It may take a day or so for new Datapower Gateway 106cd vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent IBM Datapower Gateway 106cd Security Vulnerabilities

IBM DataPower Gateway 10.x CSRF Vulnerability (10.5.0-10.6.5)
CVE-2025-36375 6.5 - Medium - April 01, 2026

IBM DataPower Gateway 10.6CD 10.6.1.0 through 10.6.5.0 and IBM DataPower Gateway 10.5.0 10.5.0.0 through 10.5.0.20 and IBM DataPower Gateway 10.6.0 10.6.0.0 through 10.6.0.8 IBM DataPower Gateway is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

Session Riding

IBM DataPower Gateway <=10.6.5.0 Admin Info Disclosure
CVE-2025-36373 4.1 - Medium - April 01, 2026

IBM DataPower Gateway 10.6CD 10.6.1.0 through 10.6.5.0 and IBM DataPower Gateway 10.5.0 10.5.0.0 through 10.5.0.20 and IBM DataPower Gateway 10.6.0 10.6.0.0 through 10.6.0.8 IBM DataPower Gateway could disclose sensitive system information from other domains to an administrative user.

Exposure of Sensitive System Information to an Unauthorized Control Sphere

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for IBM Datapower Gateway 106cd or by IBM? Click the Watch button to subscribe.

IBM
Vendor

subscribe