Cryptographic Signature Forgery in IBM Financial Transaction Manager for RedHat OpenShift
CVE-2026-18152
7.4HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-18152?
A vulnerability in IBM Financial Transaction Manager on RedHat OpenShift can permit remote attackers to forge validly-signed messages. This occurs due to inadequate verification of cryptographic signatures, potentially leading to unauthorized actions and data integrity issues. Organizations using this product should review their implementation and apply relevant patches to mitigate this risk.
Affected Version(s)
Financial Transaction Manager (FTM) for RedHat OpenShift 4.0.6.0 <= 4.0.6.0.0.6.0 Refresh (Operator 4.4.6+20260807.081800)4.0.7.04.0.8.04.0.9.04.0.10.0 Interim Fix 064