| CVE-2026-11714 | 8.5 | high | ibm / websphere application server | IBM WebSphere Application Server Liberty is affected by a server-side request forgery vulnerability with the apiDi | 67d ago |
| CVE-2026-9330 | 8.5 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during de | 96d ago |
| CVE-2026-18842 | 8.4 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to an o | 16d ago |
| CVE-2026-18824 | 8.4 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary com | 16d ago |
| CVE-2026-17091 | 8.4 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through F | 17d ago |
| CVE-2026-16832 | 8.4 | high | ibm / power system e1080 \(9080-hex\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 throu | 17d ago |
| CVE-2026-18249 | 8.4 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges due to improp | 23d ago |
| CVE-2026-10534 | 8.4 | high | ibm / db2 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to buffer overflow in the IXF IMPORT parser | 24d ago |
| CVE-2026-10535 | 8.4 | high | ibm / db2 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flac | 37d ago |
| CVE-2026-11885 | 8.4 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A c | 37d ago |
| CVE-2026-7365 | 8.4 | high | ibm / operations analytics log analysis | IBM Operations Analytics - Log Analysis and IBM SmartCloud Analytics - Log Analysis uses default passwords default | 101d ago |
| CVE-2026-17006 | 8.3 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a hea | 16d ago |
| CVE-2026-18848 | 8.3 | high | ibm / power system e1080 \(9080-hex\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 throu | 17d ago |
| CVE-2026-16708 | 8.3 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information due to extern | 22d ago |
| CVE-2026-17101 | 8.3 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code or obtain sensitive informati | 23d ago |
| CVE-2026-13433 | 8.3 | high | ibm / i access client solutions | IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 (ACS) is vulnerable to downloading unverified product code | 24d ago |
| CVE-2026-18235 | 8.3 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary Control Language com | 24d ago |
| CVE-2026-17095 | 8.3 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to un | 24d ago |
| CVE-2026-14980 | 8.3 | high | ibm / websphere application server | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery w | 37d ago |
| CVE-2026-19442 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exists in the AIX Virtual SCSI (vSCSI) | 16d ago |
| CVE-2026-18840 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to improp | 16d ago |
| CVE-2026-18670 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service and poten | 16d ago |
| CVE-2026-16943 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to a heap | 16d ago |
| CVE-2026-16933 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through F | 17d ago |
| CVE-2026-16857 | 8.2 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to manipulate network traffic and DNS | 17d ago |
| CVE-2026-16707 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through F | 17d ago |
| CVE-2026-16661 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through F | 17d ago |
| CVE-2026-17494 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability in the interf | 17d ago |
| CVE-2026-17100 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950 | 17d ago |
| CVE-2026-17093 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through F | 17d ago |
| CVE-2026-16930 | 8.2 | high | ibm / power system e1180 \(9080-heu\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by | 17d ago |
| CVE-2026-19234 | 8.2 | high | ibm / power system s1122 \(9824-22a\) firmware | Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vu | 17d ago |
| CVE-2026-16686 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported filesystems due | 17d ago |
| CVE-2026-15061 | 8.2 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote attacker to ove | 17d ago |
| CVE-2026-17081 | 8.2 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due to improper limi | 22d ago |
| CVE-2026-18509 | 8.2 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to gain privilege escalation via the Navig | 23d ago |
| CVE-2026-17272 | 8.2 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a buffer overflow. | 23d ago |
| CVE-2026-17220 | 8.2 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and modify authentication | 23d ago |
| CVE-2026-17485 | 8.2 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and obtain sensitive infor | 24d ago |
| CVE-2026-10543 | 8.2 | high | ibm / db2 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to privilege escalation with a specially cr | 24d ago |
| CVE-2026-17445 | 8.2 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to im | 24d ago |
| CVE-2026-10025 | 8.2 | high | ibm / qradar security information and event manager | IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 has an XML External Entity (XXE) | 31d ago |
| CVE-2026-14996 | 8.2 | high | ibm / aspera faspex | IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session management. | 39d ago |
| CVE-2026-19437 | 8.1 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a buf | 16d ago |
| CVE-2026-17138 | 8.1 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a sta | 16d ago |
| CVE-2026-17060 | 8.1 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information and ca | 16d ago |
| CVE-2026-17000 | 8.1 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to impro | 16d ago |
| CVE-2026-18544 | 8.1 | high | ibm / portieris | IBM Portieris 0.5.0 through 0.14.2 could allow a remote authenticated attacker to bypass image policy enforcement | 17d ago |
| CVE-2026-17414 | 8.1 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through F | 17d ago |
| CVE-2026-17429 | 8.1 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through F | 17d ago |
| CVE-2026-15078 | 8.1 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized access to AIX | 17d ago |
| CVE-2026-17206 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a buffer overflow. | 23d ago |
| CVE-2026-17069 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to im | 23d ago |
| CVE-2026-17045 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to perform unauthorized operations and ac | 23d ago |
| CVE-2026-16868 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to the use of uninitia | 23d ago |
| CVE-2026-16867 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to access server resources with the privileges of an au | 23d ago |
| CVE-2026-17197 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validat | 23d ago |
| CVE-2026-13267 | 8.1 | high | ibm / security verify access | IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify | 24d ago |
| CVE-2026-12359 | 8.1 | high | ibm / security verify access | IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify | 24d ago |
| CVE-2026-16904 | 8.1 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to impr | 24d ago |