Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

IBM — Vulnerabilities & Security Advisories 5232

Browse all 5232 CVE security advisories affecting IBM. AI-powered Chinese analysis, POCs, and references for each vulnerability.

IBM operates as a multinational technology and consulting corporation, primarily providing enterprise software, hybrid cloud services, and artificial intelligence solutions. Its extensive portfolio, including the Red Hat OpenShift platform and Watson AI suite, creates a broad attack surface that has historically been associated with Remote Code Execution (RCE) vulnerabilities, particularly within web application frameworks and middleware. Cross-site scripting (XSS) and privilege escalation flaws also frequently appear in its legacy enterprise applications and containerized environments. While the company maintains robust security protocols, past incidents have included data breaches affecting customer information and supply chain compromises. The high volume of recorded Common Vulnerabilities and Exposures (CVEs) reflects the complexity and scale of its global infrastructure rather than inherent systemic failure, though it necessitates rigorous patch management and continuous monitoring for enterprise clients relying on its diverse technological stack.

CVE ID Title CVSS Severity Published
CVE-2026-18713 IBM i is Affected By Multiple Vulnerabilities in Navigator for i — i CWE-269 8.8 High 2026-08-12
CVE-2026-16904 IBM i is Affected By improper privilege management in Navigator for i — i CWE-269 8.1 High 2026-08-12
CVE-2026-18847 IBM i is Affected By Multiple Vulnerabilities in Navigator for i — i CWE-346 8.8 High 2026-08-12
CVE-2026-16694 IBM i is Affected By Stored Cross-site Scripting for i — i CWE-79 6.4 Medium 2026-08-12
CVE-2026-17094 IBM i is Affected By Path Traversal Vulnerability in Navigator for i — i CWE-22 4.3 Medium 2026-08-12
CVE-2026-17095 IBM i is Affected By Multiple Vulnerabilities in Navigator for i — i CWE-915 8.3 High 2026-08-12
CVE-2026-18246 IBM i is Affected By security restrictions bypass in Navigator for i — i CWE-436 3.0 Low 2026-08-12
CVE-2026-18106 IBM i is Affected By Multiple Vulnerabilities in Navigator for i — i CWE-22 4.3 Medium 2026-08-12
CVE-2026-18144 IBM i is Affected By Multiple Vulnerabilities in Navigator for i — i CWE-285 4.3 Medium 2026-08-12
CVE-2026-18098 IBM i is Affected By XML injection flaw in Navigator for i — i CWE-346 8.1 High 2026-08-12
CVE-2026-18683 IBM i is Affected By privilege escalation in Navigator for i — i CWE-78 8.8 High 2026-08-12
CVE-2026-18499 IBM WebSphere Application Server Liberty is affected by a privilege escalation — WebSphere Application Server - Liberty CWE-285 8.1 High 2026-08-12
CVE-2026-17624 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.5 High 2026-08-05
CVE-2026-17633 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.5 High 2026-08-05
CVE-2026-17632 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.8 High 2026-08-05
CVE-2026-9196 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.1 High 2026-08-05
CVE-2026-8182 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.8 High 2026-08-05
CVE-2026-9201 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-326 8.8 High 2026-08-05
CVE-2026-8478 Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling — Langflow OSS CWE-94 8.8 High 2026-08-05
CVE-2026-8183 Langflow OSS is affected by arbitrary code execution in custom component validation and trusted code enforcement — Langflow OSS CWE-22 7.7 High 2026-08-05
CVE-2026-7658 Langflow OSS is affected by arbitrary code execution in custom component validation and trusted code enforcement — Langflow OSS CWE-22 6.5 Medium 2026-08-05
CVE-2026-9130 Langflow OSS is affected by arbitrary code execution in custom component validation and trusted code enforcement — Langflow OSS 7.1 High 2026-08-05
CVE-2026-10547 Langflow OSS is affected by arbitrary code execution in custom component validation and trusted code enforcement — Langflow OSS CWE-284 5.9 Medium 2026-08-05
CVE-2026-7869 Langflow OSS is affected by arbitrary code execution in custom component validation and trusted code enforcement — Langflow OSS CWE-22 5.4 Medium 2026-08-05
CVE-2026-8470 Langflow is affected by weaknesses in secret handling and sensitive configuration access — Langflow OSS CWE-327 7.4 High 2026-08-05
CVE-2026-9205 Langflow is affected by weaknesses in secret handling and sensitive configuration access — Langflow OSS CWE-338 7.4 High 2026-08-05
CVE-2026-10128 Langflow is affected by weaknesses in secret handling and sensitive configuration access — Langflow OSS CWE-200 6.5 Medium 2026-08-05
CVE-2026-9081 Langflow OSS is affected by server-side request forgery in provider validation and API request functionality — Langflow OSS CWE-918 7.1 High 2026-08-05
CVE-2026-7657 Langflow OSS is affected by server-side request forgery in provider validation and API request functionality — Langflow OSS CWE-918 6.5 Medium 2026-08-05
CVE-2026-17625 Langflow is affected by OS Command Injection in Model Context Protocol features — Langflow OSS CWE-78 7.2 High 2026-08-05

This page lists every published CVE security advisory associated with IBM. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.