IBM MQ Console/REST API XSS vulnerability fixed: CVE-2025-12635 (DT457904)
IBM published a security bulletin describing how IBM MQ can be affected by a cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server Liberty—the Liberty runtime IBM MQ uses to provide the IBM MQ Console and the IBM MQ REST API.1
What’s the issue?
The vulnerability is tracked as CVE-2025-12635 and is described as improper validation of user-supplied input leading to an XSS […]













