Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-81210— DataStage on Cloud Pak for Data has several vulnerabilities due to open source software

Quick assessment

Affected
IBM DataStage on Cloud Pak for Data
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

翻译: IBM DataStage on Cloud Pak for Data 5.4.0.0 将三个由调用方提供的字符串通过 拼接到位于共享的 RWX 持久卷(PVC)上的路径,并在返回文件时未应用项目访问控制列表(ACL)——构成纯粹的 IDOR(直接对象引用)缺陷以及路径遍历漏洞。读取操作仅限于名为 或 的文件,但 DataStage 的作业日志中通常会包含连接字符串、 密文(可通过 进行解密),以及客户数据行样本。这正是运维人员面临的租户间 PVC 泄漏威胁的真实写照;基于威胁匹配程度,严重等级由 MEDI

CVSS 7.7 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-81210

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
Source: CVE Program / CVE List V5
Vulnerability Description
IBM DataStage on Cloud Pak for Data 5.4.0.0 concatenates three caller-supplied strings into a String.format path on the shared /ds-storage RWX PVC and returns the file with no project ACL — pure IDOR plus traversal. Read is constrained to files named job.log/error.log, but DataStage job logs routinely carry connection strings, {dsnextenc} ciphertexts (decryptable via d2-f023), and customer-data row samples. This is the operator's tenant-to-tenant PVC-leakage threat verbatim; MEDIUM→HIGH via threat match.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
通过用户控制密钥绕过授权机制
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
IBM DataStage on Cloud Pak for Data 5.4.0.0 cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:5.4.0.0:*:*:*:*:*:*:*

II. Public POCs for CVE-2026-81210

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-81210

登录查看更多情报信息。

Other References for CVE-2026-81210 (1)

Same Patch Batch · IBM · 2026-09-10 · 49 CVEs total

CVE-2026-81204 9.8 CRITICAL Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-79724 9.8 CRITICAL Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-85025 9.8 CRITICAL Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-78573 9.8 CRITICAL IBM ContextForge MCP Gateway is affected by use of default credentials
CVE-2026-82107 9.6 CRITICAL DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-82100 9.6 CRITICAL DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-19646 9.1 CRITICAL Multiple vulnerabilities affect IBM License Key Server Administration and Reporting Tool a
CVE-2026-80424 9.1 CRITICAL DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-81551 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-81554 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-81940 8.8 HIGH Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-81550 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-82099 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-82092 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-81941 8.8 HIGH Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-82095 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-82097 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-81211 8.8 HIGH Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit
CVE-2026-82098 8.8 HIGH DataStage on Cloud Pak for Data has several vulnerabilities due to open source software
CVE-2026-78575 8.8 HIGH Langflow is vulnerable to arbitrary code execution due to multiple incomplete code securit

Showing top 20 of 49 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2026-81210

No comments yet


Leave a comment