A vulnerability, which was classified as problematic, has been found in IBM DataPower Gateway up to 10.6.5.0. This vulnerability affects unknown code. This manipulation causes cross-site request forgery. This vulnerability is registered as CVE-2025-36375. Remote exploitation of the attack is possible. No exploit is available. It is advisable to upgrade the affected component.
| Vendor | Product | Versions |
|---|---|---|
| ibm | datapower gateway 10.6cd | 10.6.1.0, 10.5.0.0, 10.6.0.0 |
Updated description with new details, marked exploit availability as false, and noted that the vulnerability is actively exploited.
Initial creation