Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

IBM Patches Over 100 Vulnerabilities

Posted on December 11, 2025December 11, 2025 By CWS

IBM this week introduced fixes for greater than 100 vulnerabilities throughout its merchandise, together with a number of critical-severity bugs. Most of them have been in third-party dependencies.

Storage Defender acquired patches for six critical-severity defects, all affecting third-party elements in Knowledge Shield (which is included in Storage Defender).

The weaknesses may result in denial-of-service (DoS) situations, reminiscence corruption, arbitrary file overwrite, and utility crashes.

One other critical-severity vulnerability was addressed in IBM Guardium Knowledge Safety’s implementation of the Apache Tomcat server. The flaw, tracked as CVE-2025-48913, may result in code execution.

IBM additionally introduced a repair for a critical-severity bug within the form-data library utilized in Maximo Software Suite, which may permit attackers to inject parameters in requests.

Edge Knowledge Collector acquired patches for a essential SQL injection defect within the Django internet framework.

IBM additionally fastened dozens of vulnerabilities in Observability with Instana (OnPrem), together with essential bugs in Tomcat, libxml2, and WebKit that would result in command execution, DoS situations, course of crashes, and different sudden conduct.

A critical-severity challenge within the Corosync library was addressed with safety updates for IBM Db2. The weak point may result in a course of crash or arbitrary code execution, if encryption is disabled or the attacker is aware of the encryption key.Commercial. Scroll to proceed studying.

A number of high- and medium-severity flaws have been additionally patched throughout Content material Collector, DataPower Operations Dashboard, License Metric Software, Planning Analytics, Watsonx Subscription, InfoSphere Data Server, StreamSets, and Db2 for Linux, UNIX and Home windows.

Further info on these vulnerabilities and the corresponding patches may be discovered on IBM’s safety bulletins web page.

Associated: Fortinet Patches Crucial Authentication Bypass Vulnerabilities

Associated: Ivanti EPM Replace Patches Crucial Distant Code Execution Flaw

Associated: Microsoft Patches 57 Vulnerabilities, Three Zero-Days

Associated: Adobe Patches Almost 140 Vulnerabilities

Security Week News Tags:IBM, Patches, Vulnerabilities

Post navigation

Previous Post: ValleyRAT Malware Uses Stealthy Driver Install to Bypass Windows 11 Protections
Next Post: Unpatched Gogs Zero-Day Exploited Across 700+ Instances Amid Active Attacks

Related Posts

263,000 Impacted by Esse Health Data Breach Security Week News
FBI Shares IoCs for Recent Salesforce Intrusion Campaigns Security Week News
New Exploit Poses Threat to SAP NetWeaver Instances Security Week News
Cerby Raises $40 Million for Identity Automation Platform Security Week News
HyperBunker Raises Seed Funding to Launch Next-Generation Anti-Ransomware Device Security Week News
Krispy Kreme Confirms Data Breach After Ransomware Attack Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Ashen Lepus Hacker Group Attacks Eastern Diplomatic Entities With New AshTag Malware
  • New React RSC Vulnerabilities Enable DoS and Source Code Exposure
  • $320,000 Paid Out at Zeroday.Cloud for Open Source Software Exploits
  • CISA Warns of OSGeo GeoServer 0-Day Vulnerability Exploited in Attacks
  • CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Ashen Lepus Hacker Group Attacks Eastern Diplomatic Entities With New AshTag Malware
  • New React RSC Vulnerabilities Enable DoS and Source Code Exposure
  • $320,000 Paid Out at Zeroday.Cloud for Open Source Software Exploits
  • CISA Warns of OSGeo GeoServer 0-Day Vulnerability Exploited in Attacks
  • CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2025 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark