XML External Entity Vulnerability in IBM Financial Transaction Manager for RedHat OpenShift
CVE-2026-17646
8.5HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-17646?
The IBM Financial Transaction Manager for RedHat OpenShift is susceptible to vulnerabilities stemming from improper handling of XML external entity references. This flaw enables an authenticated remote attacker to potentially access sensitive information, underscoring the importance of secure configurations and prompt patching to mitigate risks. Users are advised to review the vendor advisory for detailed guidance on addressing this issue.
Affected Version(s)
Financial Transaction Manager (FTM) for RedHat OpenShift 4.0.6.0 <= 4.0.6.0.0.6.0 Refresh (Operator 4.4.6+20260807.081800)4.0.7.04.0.8.04.0.9.04.0.10.0 Interim Fix 064