Vulnerability index

Browse CVEs

2,237 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

I HIGH 7.5
CVE-2026-16868

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to the use of uninitialized memory during ASN.1 length pr…

No fix yet
Fix from $4,900 2026-08-13
I MEDIUM 5.3
CVE-2026-16859

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive information due to an out-of-bounds read.

No fix yet
Fix from $4,000 2026-08-13
I MEDIUM 5.3
CVE-2026-16861

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an out-of-bounds read.

No fix yet
Fix from $4,000 2026-08-13
Websphere Application Server CRITICAL 9.4
CVE-2026-14525

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 IBM WebSphere Application Server Liberty is vulnerable to an authentication bypa…

No fix yet
Fix from $5,750 2026-08-13
I HIGH 8.8
CVE-2026-16674

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an untrusted search path.

No fix yet
Fix from $4,900 2026-08-13
I Access Client Solutions HIGH 7.8
CVE-2026-14875

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to arbitrary code execution on Windows when installed for all users due to publi…

No fix yet
Fix from $4,900 2026-08-13
Storage Scale HIGH 7.5
CVE-2026-13460

IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 GUI contains a hardcoded token in the source code, which was used for inter-no…

No fix yet
Fix from $4,900 2026-08-13
I MEDIUM 6.5
CVE-2026-16692

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a stack-based buffer overflow.

No fix yet
Fix from $4,000 2026-08-13
Documentation Offline MEDIUM 5.3
CVE-2026-16713

IBM Documentation Offline 1.0.0 through 1.4.1 IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misco…

Fix unknown
Fix from $4,000 2026-08-13
Planning Analytics Local MEDIUM 6.5
CVE-2026-13365

IBM Planning Analytics 2.0, and 2.1 Local is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthor…

No fix yet
Fix from $4,000 2026-08-13
Websphere Application Server MEDIUM 5.3
CVE-2026-10571

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by a denial of service caused by insecure deserialization. A low-pri…

No fix yet
Fix from $4,000 2026-08-13
I CRITICAL 9.8
CVE-2026-17197

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of client-asserted identity.

No fix yet
Fix from $5,750 2026-08-13
I HIGH 8.2
CVE-2026-17220

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and modify authentication metadata due to a buffer overflow.

No fix yet
Fix from $4,900 2026-08-13
I HIGH 7.8
CVE-2026-18071

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to improper privilege management.

No fix yet
Fix from $4,900 2026-08-13
Db2 CRITICAL 9.8
CVE-2026-10534

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to buffer overflow in the IXF IMPORT parser.

No fix yet
Fix from $5,750 2026-08-12
I HIGH 8.2
CVE-2026-17485

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and obtain sensitive information due to an integer underflow.

No fix yet
Fix from $4,900 2026-08-12
Security Verify Access CRITICAL 9.8
CVE-2026-17616

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 thr…

No fix yet
Fix from $5,750 2026-08-12
I Access Client Solutions HIGH 7.8
CVE-2026-16695

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 could allow a local attacker to execute arbitrary code due to improper neutralization of speci…

No fix yet
Fix from $4,900 2026-08-12
Db2 HIGH 7.1
CVE-2026-16480

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is affected by an improper authorization vulnerability in the certain command, allowing a no…

Fix unknown
Fix from $4,900 2026-08-12
Db2 MEDIUM 5.5
CVE-2026-18097

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to ob…

No fix yet
Fix from $4,000 2026-08-12
I Access Client Solutions CRITICAL 9.6
CVE-2026-13433

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 (ACS) is vulnerable to downloading unverified product code when configured to update from an I…

No fix yet
Fix from $5,750 2026-08-12
I Access Client Solutions HIGH 8.8
CVE-2026-13105

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to zip slip path traversal exploit when importing a configuration.

No fix yet
Fix from $4,900 2026-08-12
Informix Dynamic Server HIGH 7.8
CVE-2026-13367

IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in the oninit setuid-root utility.

No fix yet
Fix from $4,900 2026-08-12
Informix Dynamic Server HIGH 7.3
CVE-2026-13476

IBM Informix Dynamic Server 14.10, 15.0, and 12.10 could allow an unauthenticated user to execute arbitrary commands with service account privileges …

No fix yet
Fix from $4,900 2026-08-12
I Access Client Solutions HIGH 7.1
CVE-2026-14866

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to injection of rogue certificate authority due to publicly writeable truststore.

No fix yet
Fix from $4,900 2026-08-12
Db2 CRITICAL 9.8
CVE-2026-10543

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to privilege escalation with a specially crafted query.

No fix yet
Fix from $5,750 2026-08-12
I Access Client Solutions HIGH 7.8
CVE-2026-13094

IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to arbitrary code execution on Windows when installed for all users due to publi…

No fix yet
Fix from $4,900 2026-08-12
Security Verify Access HIGH 7.5
CVE-2026-11932

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 thr…

No fix yet
Fix from $4,900 2026-08-12
I MEDIUM 5.3
CVE-2026-18150

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to a race condition.

Fix unknown
Fix from $4,000 2026-08-12
I HIGH 8.8
CVE-2026-17417

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of shell metach…

No fix yet
Fix from $4,900 2026-08-12