HIGH
CVE-2026-13107
CVSS
7.1
Description
IBM Business Automation Workflow containers and traditional may use programming model artifacts that are vulnerable to XML Entity Injection attacks by default.
Weakness (CWE)
CWE-611
XML External Entity (XXE)
EPSS Score
0.36%
Probability of exploitation in next 30 days
30.2th percentile
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.