ibm
538 known vulnerabilities affecting ibm products.
Products
aix 167
vios 149
i 133
websphere_application_server 40
power_system_e1180_\(9080-heu\) 29
power_system_e1180_\(9080-heu\)_firmware 29
power_system_e1080_\(9080-hex\) 28
power_system_e1080_\(9080-hex\)_firmware 28
power_system_e1150_\(9043-mru\) 25
power_system_e1150_\(9043-mru\)_firmware 25
power_system_e1050_\(9043-mrx\) 25
power_system_e1050_\(9043-mrx\)_firmware 25
power_system_l1022_\(9786-22h\) 25
power_system_l1022_\(9786-22h\)_firmware 25
power_system_l1024_\(9786-42h\) 25
power_system_l1024_\(9786-42h\)_firmware 25
power_system_l1122_\(9856-22h\) 25
power_system_l1122_\(9856-22h\)_firmware 25
power_system_l1124_\(9856-42h\) 25
power_system_l1124_\(9856-42h\)_firmware 25
power_system_s1012_\(9028-21b\) 25
power_system_s1012_\(9028-21b\)_firmware 25
power_system_s1014_\(9105-41b\) 25
power_system_s1014_\(9105-41b\)_firmware 25
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-17470 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-14979 | Low | 0.4% | 5.3 | IBM Engineering Lifecycle Management 7.0.3 ( Interim Fix 001 through ) Interim F… | |
| CVE-2026-78543 | Low | 0.4% | 5.3 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.… | |
| CVE-2026-9336 | Low | 0.4% | 6.5 | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of servi… | |
| CVE-2026-17057 | Low | 0.4% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-16972 | Low | 0.4% | 6.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to o… | |
| CVE-2026-7253 | Low | 0.4% | 6.0 | IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL … | |
| CVE-2026-17088 | Low | 0.4% | 4.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-18106 | Low | 0.4% | 4.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-18828 | Low | 0.4% | 5.4 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to c… | |
| CVE-2026-15093 | Low | 0.4% | 4.3 | IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to … | |
| CVE-2026-17015 | Low | 0.4% | 5.4 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to caus… | |
| CVE-2024-22348 | Low | 0.4% | 5.3 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses … | |
| CVE-2026-17259 | Low | 0.4% | 4.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to caus… | |
| CVE-2026-16660 | Low | 0.4% | 5.3 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a … | |
| CVE-2026-16861 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17076 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17077 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17078 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17212 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17216 | Low | 0.4% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-17273 | Low | 0.4% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to caus… | |
| CVE-2026-17043 | Low | 0.4% | 3.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to dele… | |
| CVE-2026-17207 | Low | 0.3% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-18178 | Low | 0.3% | 5.4 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attack… | |
| CVE-2026-16929 | Low | 0.3% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-16827 | Low | 0.3% | 5.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to c… | |
| CVE-2026-16853 | Low | 0.3% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive i… | |
| CVE-2026-17109 | Low | 0.3% | 4.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to add … | |
| CVE-2026-17071 | Low | 0.3% | 2.7 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to perf… | |
| CVE-2026-11932 | Low | 0.3% | 5.3 | IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access … | |
| CVE-2024-22347 | Low | 0.3% | 5.9 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses … | |
| CVE-2026-14501 | Low | 0.3% | 4.3 | IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM Agentics 1.0 could allow an attacke… | |
| CVE-2026-9667 | Low | 0.3% | 5.3 | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side reque… | |
| CVE-2025-36220 | Low | 0.3% | 4.3 | IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cl… | |
| CVE-2026-17075 | Low | 0.3% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive i… | |
| CVE-2026-16833 | Low | 0.3% | 5.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to d… | |
| CVE-2026-15069 | Low | 0.3% | 5.4 | IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to … | |
| CVE-2026-17226 | Low | 0.3% | 5.4 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-4938 | Low | 0.3% | 6.5 | IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10… | |
| CVE-2026-16878 | Low | 0.3% | 5.4 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obta… | |
| CVE-2026-11904 | Low | 0.3% | 5.3 | IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10… | |
| CVE-2026-16859 | Low | 0.3% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive i… | |
| CVE-2026-17443 | Low | 0.3% | 5.3 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.… | |
| CVE-2026-17444 | Low | 0.3% | 5.3 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.… | |
| CVE-2026-16692 | Low | 0.3% | 6.5 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to caus… | |
| CVE-2026-18020 | Low | 0.3% | 5.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of … | |
| CVE-2026-1918 | Low | 0.3% | 4.9 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2… | |
| CVE-2026-9338 | Low | 0.3% | 5.3 | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of servi… | |
| CVE-2026-18076 | Low | 0.3% | 4.3 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to caus… |