Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
IBM strongly recommends addressing the vulnerability now by upgrading. Affected Product(s)Version(s)Remediation / FixIBM Business Automation Workflow containersV26.0.0Apply container 26.0.0-IF001 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-containers-26000-interim-fixes IBM Business Automation Workflow traditionalV26.0.0Apply traditional 26.0.0-IF001 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-26000-interim-fixes IBM Business Automation Workflow containersV25.0.0 - V25.0.0-IF005Apply container 25.0.0-IF006 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-containers-25000-interim-fixes IBM Business Automation Workflow traditionalV25.0.0 - V25.0.0-IF005Apply traditional 25.0.0-IF006 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-25000-interim-fixes IBM Business Automation Workflow containersV24.0.1 - V24.0.1-IF007Apply container 24.0.1-IF008 https://www.ibm.com/support/pages/node/7183042 IBM Business Automation Workflow traditionalV24.0.1 - V24.0.1-IF007Apply traditional 24.0.1-IF008 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-24010-interim-fixes IBM Business Automation Workflow containersV24.0.0 - V24.0.0-IF009Apply container 24.0.0-IF010 https://www.ibm.com/support/pages/node/7159792 IBM Business Automation Workflow traditionalV24.0.0 - V24.0.0-IF009Apply traditional 24.0.0-IF010 https://www.ibm.com/support/pages/readme-ibm-business-automation-workflow-24000-interim-fixes
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7282596 |
|
Wed, 05 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Validation of Certificate with Host Mismatch in IBM Business Automation Workflow containers July 2026 | Improper Validation of Certificate with Host Mismatch in IBM Business Automation Workflow containers |
Wed, 05 Aug 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Business Automation Workflow containers and traditional 26.0.0, 25.0.0 through 25.0.0 Interim Fix 005, 24.0.1 through 24.0.1 Interim Fix 007, and 24.0.0 through 24.0.0 Interim Fix 009 IBM Business Automation Workflow fails to properly verify that the hostname matches the server certificate potentially allowing connections to an attacker-controlled server. | |
| Title | Improper Validation of Certificate with Host Mismatch in IBM Business Automation Workflow containers July 2026 | |
| First Time appeared |
Ibm
Ibm business Automation Workflow Containers And Traditional |
|
| Weaknesses | CWE-297 | |
| CPEs | cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:24.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:24.0.0:interim_fix_009:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:24.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:24.0.1:interim_fix_007:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:25.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:25.0.0:interim_fix_005:*:*:*:*:*:* cpe:2.3:a:ibm:business_automation_workflow_containers_and_traditional:26.0.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm business Automation Workflow Containers And Traditional |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-08-05T17:59:18.166Z
Reserved: 2026-06-19T15:59:20.718Z
Link: CVE-2026-12730
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-05T17:45:16Z
-
CWE-297
Improper Validation of Certificate with Host Mismatch