Weak Cryptographic Validation in IBM Security Verify Access Products
CVE-2026-17616
6.8MEDIUM
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 12 August 2026
What is CVE-2026-17616?
Certain configurations of IBM Security Verify Access and IBM Verify Identity Access products may yield inadequate cryptographic validation of user-supplied data. This weakness can potentially allow attackers to manipulate or inject data in ways that compromise the integrity and confidentiality of information processed by these security systems. Organizations using affected versions should review their configurations and apply the necessary patches to mitigate the risks associated with this vulnerability.
Affected Version(s)
Security Verify Access 10.0 <= 10.0.9.2
Security Verify Access Container 10.0 <= 10.0.9.2
Verify Identity Access 11.0 <= 11.0.3