Denial of Service Vulnerability in IBM MQ for HPE NonStop
CVE-2026-11716

7.5HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
18 September 2026

What is CVE-2026-11716?

IBM MQ for HPE NonStop versions 8.1.0 to 8.1.0.40 are susceptible to a denial of service attack or arbitrary code execution. This vulnerability arises from inadequate validation of cluster migration data during the queue manager startup process, allowing authenticated attackers to exploit this flaw and potentially disrupt services.

Affected Version(s)

MQ for HPE NonStop 8.1.0 <= 8.1.0.40

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.