Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
Published Aug 12, 2026
7.2
HIGHCVSS 3.1
EPSS 0.54%
Description
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 contains a input validation vulnerability in the management interface that allows already privileged attackers to execute additional operations by crafting a malicious HTTP request.
Affected products
-
- Version 10.0StatusaffectedConstraints<=10.0.9.2
- Version
-
- Version 10.0StatusaffectedConstraints<=10.0.9.2
- Version
-
- Version 11.0StatusaffectedConstraints<=11.0.3
- Version
-
- Version 11.0StatusaffectedConstraints<=11.0.3
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| IBM | Security Verify Access | n/a |
| ||||||
| IBM | Security Verify Access Container | n/a |
| ||||||
| IBM | Verify Identity Access | n/a |
| ||||||
| IBM | Verify Identity Access Container | n/a |
|
- ≥ 10.0.0 · ≤ 10.0.9.2
- 10.0.9.2
- ≥ 11.0 · ≤ 11.0.3
- ≥ 11.0.0.0 · ≤ 11.0.3.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
IBM encourages customers to update their systems promptly.
Appliance: Affected Products and Versions Fix availability IBM Verify Identity Access 11.0 - 11.0.3 Download IBM Verify Identity Access v11.0.3 IF1 IBM Security Verify Access 10.0.0 - 10.0.9.2 Download IBM Security Verify Access v10.0.9.2 IF2
Container: Container Download
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-57534 Advisory
- https://www.ibm.com/support/pages/node/7283079 vendor-advisorypatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-57534 | Advisory | |
| https://www.ibm.com/support/pages/node/7283079 | vendor-advisorypatchVendor Advisory |
Change history (0)
No recorded changes yet.