Vulnerability Description
IBM Business Automation Workflow containers and traditional 26.0.0, 25.0.0 through 25.0.0 Interim Fix 005, 24.0.1 through 24.0.1 Interim Fix 007, and 24.0.0 through 24.0.0 Interim Fix 009 IBM Business Automation Workflow fails to properly verify that the hostname matches the server certificate potentially allowing connections to an attacker-controlled server.
CVSS Score
LOW
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-12730?
CVE-2026-12730 is a vulnerability with a CVSS score of 3.8 (LOW). IBM Business Automation Workflow containers and traditional 26.0.0, 25.0.0 through 25.0.0 Interim Fix 005, 24.0.1 through 24.0.1 Interim Fix 007, and 24.0.0 through 24.0.0 Interim Fix 009 IBM Business...
How severe is CVE-2026-12730?
CVE-2026-12730 has been rated LOW with a CVSS base score of 3.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-12730?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.