Security Bypass in IBM i Affected Versions
CVE-2026-18193

8.9HIGH

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
13 August 2026

What is CVE-2026-18193?

IBM i versions 7.6, 7.5, 7.4, and 7.3 may be susceptible to a security bypass vulnerability that enables remote attackers to circumvent established security restrictions. This issue arises from the inadequate validation of addresses controlled by users, potentially allowing unauthorized access or manipulation of data. Users and administrators should apply the necessary patches to bolster their security framework against this vulnerability.

Affected Version(s)

i 7.6

i 7.5

i 7.4

References

CVSS V3.1

Score:
8.9
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.