IBM

Security Scorecard

Score

20F

Total CVEs

318

Patch Rate

23%

73 patched

Avg Response

1733d

days to patch

Critical Gaps

38

exploitable, no detection

Severity Breakdown

Critical3
High151
Medium127
Low31

Patch Status

Patched73 (23%)
Partial/Workaround3 (1%)
Unpatched242 (76%)

CVEs (322)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-36418IBM ApplinX Privilege EscalationHigh7.3-Patched
CVE-2019-25278CVE-2019-25278High7.5-Patched
CVE-2019-25279FaceSentry Access Control System VulnerabilityHigh8.2-Patched
CVE-2025-13915IBM API Connect Authentication BypassCritical9.8-Patched
CVE-2025-13481Aspera Orchestrator VulnerabilityHigh8.8-Patched
CVE-2025-13214Aspera Orchestrator SQL InjectionHigh7.6-Patched
CVE-2025-13211IBM Aspera Orchestrator Denial of Service VulnerabilityMedium5.3-Patched
CVE-2025-36437IBM Planning Analytics Local VulnerabilityMedium4.3-Workaround
CVE-2025-64650IBM Storage Defender Resiliency Service VulnerabilityMedium6.5-Patched
CVE-2025-36140IBM watsonx.data Denial of Service VulnerabilityMedium6.5-Patched