CVE-2026-11927
IBM Security Verify Identity Access reverse proxy may allow parameters to be injected in requests to third party services.
Scoring
- CVSS base score
- 0
- EPSS probability
- 0.15%
- CWE
- CWE-74
- Published
- 2026-09-15
- Last modified
- 2026-09-16
Affected products
- IBM Verify Identity Access
- IBM Security Verify Access
- IBM Verify Identity Access Container
- IBM Security Verify Access Container
Weakness type
Related vulnerabilities
- CVE-2026-87572 — Injection in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer
- CVE-2026-82971 — QVidium Opera11 CGI Script net_tr.cgi command injection
- CVE-2026-20130 — Cisco Identity Services Engine Hardening Release - Improper Neutralization Vulnerabilities
- CVE-2026-12351 — IBM MQ is vulnerable to unauthenticated remote code execution via JNDI injection
- CVE-2026-79697 — Advantech WISE-6610-NB Basic Station Certificate-Deletion basicstation_apply command injection
- CVE-2026-79698 — Advantech WISE-6610-NB Node-RED nodered_lib_apply command injection
- CVE-2026-79234 — Injection in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain sensitive infor
- CVE-2026-83772 — Cobham SATCOM VSAT7090 Maritime Satellite Router JSON Parsing mail-report.sh c_set_reports_decode command injection