CVE Vulnerabilities

CVE-2025-36299

Inclusion of Sensitive Information in Source Code

Published: Nov 17, 2025 | Modified: Nov 19, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Planning Analytics Local 2.1.0 through 2.1.14 stores sensitive information in source code could be used in further attacks against the system.

Weakness

Source code on a web server or repository often contains sensitive information and should generally not be accessible to users.

Affected Software

NameVendorStart VersionEnd Version
Planning_analytics_localIbm2.1.0 (including)2.1.15 (excluding)
Planning_analytics_workspaceIbm2.1.0 (including)2.1.15 (excluding)

Potential Mitigations

References