CVE-2026-82094 is a vulnerability in IBM Datastage On Cloud Pak Data
Published on September 24, 2026
DataStage on Cloud Pak for Data has several vulnerabilities
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to traverse directories on the system due to improper limitation of a pathname to a restricted directory.
Vulnerability Analysis
CVE-2026-82094 is exploitable with network access, and requires small amount of user privileges. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality, a high impact on integrity, and a small impact on availability.
Weakness Type
What is a Directory traversal Vulnerability?
The software uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the software does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.
CVE-2026-82094 has been classified to as a Directory traversal vulnerability or weakness.
Products Associated with CVE-2026-82094
Want to know whenever a new CVE is published for IBM Datastage On Cloud Pak Data? stack.watch will email you.