Remote Command Execution Vulnerability in IBM DataStage on Cloud Pak for Data
CVE-2026-16346
9.9CRITICAL
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-16346?
A vulnerability in IBM DataStage on Cloud Pak for Data version 5.4.0.0 potentially allows remote authenticated attackers to execute arbitrary commands. This flaw arises from improper handling of special elements within OS command executions, enabling attackers to manipulate system commands. It is crucial for users to apply available patches to mitigate this security risk.
Affected Version(s)
DataStage on Cloud Pak for Data 5.4.0.0