
CVE-2025-36440 IBM Concert 1.0.0 through 2.2.0 could allow a local user to obtain sensitive information due to missing function level access control. https://www.cve.org/CVERecord?id=CVE-2025-36440
Post summary
IBM Concert versions 1.0.0 through 2.2.0 risk local info disclosure due to missing function-level access control; no patch or exploit details are provided.
