IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow an unauthorized user to obtain valid tokens to gain access to protected resources due to improper certificate validation.
| Software | From | Fixed in |
|---|---|---|
| ibm / cognos_controller | 11.0.0 | 11.0.1.x |
| ibm / controller | 11.1.0 | 11.1.0.x |