IBM UCD - IBM DevOps Deploy 8.1 through 8.1.2.3 could allow an authenticated user with LLM integration configuration privileges to recover a previously saved LLM API Token.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7254663 |
|
History
Mon, 15 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Dec 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM UCD - IBM DevOps Deploy 8.1 through 8.1.2.3 could allow an authenticated user with LLM integration configuration privileges to recover a previously saved LLM API Token. | |
| Title | IBM DevOps Deploy is susceptible to a Insufficiently Protected Credentials vulnerability | |
| First Time appeared |
Ibm
Ibm ucd Ibm Devops Deploy |
|
| Weaknesses | CWE-522 | |
| CPEs | cpe:2.3:a:ibm:ucd___ibm_devops_deploy:8.1.2.3:*:*:*:*:*:*:* cpe:2.3:a:ibm:ucd___ibm_devops_deploy:8.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm ucd Ibm Devops Deploy |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2025-12-15T19:43:07.880Z
Updated: 2025-12-15T20:27:13.721Z
Reserved: 2025-12-05T19:00:10.655Z
Link: CVE-2025-14148
Updated: 2025-12-15T20:26:59.456Z
Status : Received
Published: 2025-12-15T20:15:49.043
Modified: 2025-12-15T20:15:49.043
Link: CVE-2025-14148
No data.