IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
| Software | From | Fixed in |
|---|---|---|
| ibm / security_verify_access | 10.0.0.0 | 10.0.9.0 |
| ibm / security_verify_access_docker | 10.0.0.0 | 10.0.9.0 |