CVE-2026-82095

Summary

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.

Affected Software

VendorProductVersion RangeStatus
IBMDataStage on Cloud Pak for Data5.4.0.0affected

Weaknesses

  • CWE-78: CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

References