CVE-2025-27550: IBM Jazz Reporting Service Information Disclosure
IBM Jazz Reporting Service could allow an authenticated user on the host network to obtain sensitive information about other projects that reside on the server.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27550?
CVE-2025-27550 has a severity rating that indicates a significant risk of information disclosure to authenticated users.
How do I fix CVE-2025-27550?
To mitigate CVE-2025-27550, apply the latest patches and updates provided by IBM for the Jazz Reporting Service.
Who is affected by CVE-2025-27550?
CVE-2025-27550 affects authenticated users on the host network of IBM Jazz Reporting Service installations.
What type of information can be disclosed due to CVE-2025-27550?
CVE-2025-27550 may allow users to obtain sensitive information about other projects hosted on the IBM Jazz Reporting Service server.
Is there a workaround for CVE-2025-27550?
Currently, the recommended approach is to update to the latest version of IBM Jazz Reporting Service to address CVE-2025-27550.