| CVE-2026-16824 | 7.5 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to un | 17d ago |
| CVE-2026-16818 | 7.5 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to un | 17d ago |
| CVE-2026-16817 | 7.5 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a | 17d ago |
| CVE-2026-16706 | 7.5 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an | 17d ago |
| CVE-2026-16690 | 7.5 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to un | 17d ago |
| CVE-2026-14970 | 7.5 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM server process is crashing during client registration due to buf | 17d ago |
| CVE-2026-18554 | 7.5 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information | 22d ago |
| CVE-2026-17177 | 7.5 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service due to uncontrol | 22d ago |
| CVE-2026-17175 | 7.5 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information | 22d ago |
| CVE-2026-16915 | 7.5 | high | ibm / db2 mirror for i | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information | 22d ago |
| CVE-2026-18077 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a stack-based buffe | 23d ago |
| CVE-2026-17473 | 7.5 | high | ibm / documentation offline | IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to imprope | 23d ago |
| CVE-2026-18846 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to a buffer overflow from improperly validating client data. | 23d ago |
| CVE-2026-17229 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an infinite loop. | 23d ago |
| CVE-2026-17199 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to unbounded resource | 23d ago |
| CVE-2026-17004 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an infinite loop. | 23d ago |
| CVE-2026-16982 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a heap buffer overf | 23d ago |
| CVE-2026-16887 | 7.5 | high | ibm / i | IBM i 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds write. | 23d ago |
| CVE-2026-13460 | 7.5 | high | ibm / storage scale | IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 GUI contains a hardcoded token in the sourc | 23d ago |
| CVE-2026-17271 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper validation | 24d ago |
| CVE-2026-16931 | 7.5 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper handling o | 24d ago |
| CVE-2026-12733 | 7.5 | high | ibm / datapower gateway | IBM DataPower Gateway could allow a remote attacker to cause a denial of service due to improper resource limitati | 37d ago |
| CVE-2026-10545 | 7.5 | high | ibm / planning analytics local | IBM Planning Analytics Local 2.1.0 through 2.1.21 is vulnerable to an open redirect that allows an attacker to red | 37d ago |
| CVE-2024-25039 | 7.5 | high | ibm / engineering requirements management doors web access | IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9 | 37d ago |
| CVE-2026-9322 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0. | 37d ago |
| CVE-2026-10842 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0 | 37d ago |
| CVE-2026-14519 | 7.5 | high | ibm / app connect enterprise | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacke | 37d ago |
| CVE-2026-12947 | 7.5 | high | ibm / app connect enterprise | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive | 37d ago |
| CVE-2026-11897 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service, caused | 37d ago |
| CVE-2026-15280 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 ND Collective Controller is affected by a pat | 39d ago |
| CVE-2026-15057 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service due to u | 39d ago |
| CVE-2026-14981 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0 | 39d ago |
| CVE-2026-13463 | 7.5 | high | ibm / cloud pak system | IBM Cloud Pak System 2.3.5.0 could allow a local attacker to obtain sensitive information due to the insertion of | 39d ago |
| CVE-2026-15322 | 7.5 | high | ibm / engineering ai hub | IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to obtain sensitive information due t | 50d ago |
| CVE-2026-9171 | 7.5 | high | ibm / powervm novalink | IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to a denial of service, ca | 50d ago |
| CVE-2026-13772 | 7.5 | high | ibm / websphere extreme scale | IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 's Object Query Language engine resolves attacker-supplied cla | 67d ago |
| CVE-2026-13759 | 7.5 | high | ibm / websphere extreme scale | IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 ships three ObjectInputStream subclasses (WsObjectInputStream, | 67d ago |
| CVE-2026-9071 | 7.5 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0. | 75d ago |
| CVE-2026-8858 | 7.5 | high | ibm / i | IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code executi | 75d ago |
| CVE-2026-4870 | 7.5 | high | ibm / qiskit software development kit | IBM Qiskit SDK 0.43.0 through 2.5.0 could allow an attacker to trigger a segmentation fault leading to a denial of | 85d ago |
| CVE-2026-8180 | 7.5 | high | ibm / aspera high-speed transfer endpoint | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3. | 101d ago |
| CVE-2026-3366 | 7.5 | high | ibm / infosphere optim test data fabrication | IBM InfoSphere Optim Test Data Fabrication 1.0.0, 1.0.0.1, 1.0.0.2, 1.0.2, 1.0.2.2, 1.0.2.3, 1.0.2.4, 1.0.2.5, 1.0. | 101d ago |
| CVE-2026-8854 | 7.5 | high | ibm / http server | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_mem_cache. | 102d ago |
| CVE-2026-8620 | 7.5 | high | ibm / websphere application server | IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application S | 102d ago |
| CVE-2026-8850 | 7.5 | high | ibm / http server | IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_ibm_upload. | 102d ago |
| CVE-2025-14031 | 7.5 | high | ibm / sterling b2b integrator | IBM Sterling B2B Integrator and and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1 | 172d ago |
| CVE-2026-1376 | 7.5 | high | ibm / i | IBM i 7.6 could allow a remote attacker to cause a denial of service using failed authentication connections due to | 172d ago |
| CVE-2025-36254 | 7.4 | high | ibm / ds8900f firmware | IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an | 17d ago |
| CVE-2026-16851 | 7.4 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a | 17d ago |
| CVE-2026-11923 | 7.4 | high | ibm / security verify access | IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify | 24d ago |
| CVE-2026-15328 | 7.4 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0 | 39d ago |
| CVE-2026-14528 | 7.4 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 traditional could allow a remote attacker to obtain sensitive inform | 39d ago |
| CVE-2026-11541 | 7.4 | high | ibm / websphere application server | IBM CICS Transaction Gateway for Multiplatforms 9.1, 9.2, 9.3, and 10.1 IBM WebSphere Application Server 9.0, and | 67d ago |
| CVE-2026-9006 | 7.4 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) with the Ajax Pro | 75d ago |
| CVE-2026-8646 | 7.4 | high | ibm / websphere application server | IBM WebSphere Application Server 9.0 and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0 | 75d ago |
| CVE-2026-16927 | 7.3 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain root privileges due to a time-o | 16d ago |
| CVE-2026-18871 | 7.3 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vu | 17d ago |
| CVE-2026-17097 | 7.3 | high | ibm / power system s1122 \(9824-22a\) firmware | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through F | 17d ago |
| CVE-2026-17042 | 7.3 | high | ibm / power system s922 \(9009-22g\) firmware | IBM Power Systems Firmware FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 | 17d ago |
| CVE-2026-18511 | 7.3 | high | ibm / i | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to generate a stack-based buffer overflow | 23d ago |