Server-side Request Forgery in IBM Financial Transaction Manager for RedHat OpenShift
CVE-2026-18066
7.9HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-18066?
A server-side request forgery vulnerability in IBM Financial Transaction Manager for RedHat OpenShift allows local attackers to exploit the system. By manipulating requests, an attacker could gain unauthorized access to sensitive information and initiate unintended actions, potentially compromising the security of the application. This vulnerability necessitates prompt attention and appropriate mitigation measures to secure affected systems.
Affected Version(s)
Financial Transaction Manager (FTM) for RedHat OpenShift 4.0.6.0 <= 4.0.6.0.0.6.0 Refresh (Operator 4.4.6+20260807.081800)4.0.7.04.0.8.04.0.9.04.0.10.0 Interim Fix 064