Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY105 SECURITY RECORDS

IBM Corporation

Cognos Analytics

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2025-36076 18 Sep 2026 Cognos Analytics: 12.1.0 ≤ 12.1.3 FP1, 12.0.4 ≤ 12.0.4 FP2 IBM strongly recommends addressing the vulnerability now.; Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3 FP1 12.1.3 FP2 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.0.4 - 12.0.4 FP2 12.0.4 FP3 https://www.ibm.com/support/pages/node/7269268 Update reference ↗
CVE-2025-33147 18 Sep 2026 Cognos Analytics: 12.1.0 ≤ 12.1.3 FP1, 12.0.4 ≤ 12.0.4 FP2 IBM strongly recommends addressing the vulnerability now.; Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3 FP1 12.1.3 FP2 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.0.4 - 12.0.4 FP2 12.0.4 FP3 https://www.ibm.com/support/pages/node/7269268 Update reference ↗
CVE-2024-56344 18 Sep 2026 Cognos Analytics: 12.0.4 ≤ 12.0.4 FP2, 12.1.0 ≤ 12.1.3 FP1 Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.0.4 12.0.4 FP3 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.1.3 12.1.3 FP2 https://www.ibm.com/support/pages/node/7269268 Update reference ↗
CVE-2026-7884 14 Sep 2026 Cognos Analytics: 12.1.0 ≤ 12.1.3 FP1, 12.0.4 ≤ 12.0.4 FP2 IBM strongly recommends addressing the vulnerability now.; Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3 FP1 12.1.3 FP2 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.0.4 - 12.0.4 FP2 12.0.4 FP3 https://www.ibm.com/support/pages/node/7269268 Update reference ↗
CVE-2026-15995 17 Jul 2026 12.1.3 GA Version with build number ≤ 12.1.3-2606251736 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2025-3633 27 May 2026 11.2.0; 12.0; 12.1.0; 11.2.4 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2025-36126 26 May 2026 11.2.0; 12.0; 12.1.0; 11.2.4 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-52900 28 Jun 2025 11.2.0 ≤ 11.2.4 FP5; 12.0.0 ≤ 12.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2025-0923 11 Jun 2025 11.2.0; 11.2.1; 11.2.2; 11.2.3; 11.2.4; 12.0.0; 12.0.1; 12.0.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2025-0917 11 Jun 2025 11.2.0; 11.2.1; 11.2.2; 11.2.3; 11.2.4; 12.0.0; 12.0.1; 12.0.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2025-25032 11 Jun 2025 11.2.0; 11.2.1; 11.2.2; 11.2.3; 11.2.4; 12.0.0; 12.0.1; 12.0.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-56340 28 Feb 2025 11.2.0 ≤ 11.2.4 FP5 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2025-0823 28 Feb 2025 11.2.0 ≤ 11.2.4 FP5; 12.0.0 ≤ 12.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-49352 5 Feb 2025 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, 12.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-40695 20 Dec 2024 11.2.0 ≤ 11.2.4; 12.0.0 ≤ 12.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-51466 20 Dec 2024 11.2.0 ≤ 11.2.4; 12.0.0 ≤ 12.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-25042 18 Dec 2024 11.2.0 ≤ 11.2.4; 12.0.0 ≤ 12.0.3 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-45082 18 Dec 2024 11.2.0 ≤ 11.2.4; 12.0.0 ≤ 12.0.3 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-41752 18 Dec 2024 11.2.0 ≤ 11.2.4; 12.0.0 ≤ 12.0.3 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-40703 22 Sep 2024 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3; 11.0.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-25041 28 Jun 2024 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-25053 28 Jun 2024 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-25047 2 May 2024 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-43051 24 Feb 2024 11.1.7, 11.2.4, 12.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2022-34357 24 Feb 2024 11.1.7, 11.2.4, 12.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2023-30996 24 Feb 2024 11.1.7, 11.2.4, 12.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2023-32344 24 Feb 2024 e No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2023-38359 24 Feb 2024 e No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2023-35011 16 Aug 2023 11.1.7, 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-35009 16 Aug 2023 11.1.7, 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-28530 22 Jul 2023 11.1, 11.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-25929 22 Jul 2023 11.1, 11.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-39036 12 May 2023 11.1, 11.2 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2022-39160 19 Dec 2022 11.1.7, 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-43883 19 Dec 2022 11.1.7, 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-43887 19 Dec 2022 11.1.7, 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-38708 19 Dec 2022 11.1.7 11.2.0, 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-36773 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-30614 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-39045 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-39009 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-29823 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-20468 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2020-4301 1 Sep 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-39047 24 Jun 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-38945 24 Jun 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-29768 24 Jun 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-38946 22 Apr 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-38905 22 Apr 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-38904 22 Apr 2022 11.2.0; 11.1.7; 11.2.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.