Back

MEDIUM

IBM QRadar SIEM Cross-Site Scripting

Published Mar 19, 2026

Description

IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

Affected products

Remediation

Vendor solution

ProductVersionFixIBM QRadar SIEM 7.5.0 7.5.0 UP15 https://www.ibm.com/support/fixcentral/swg/selectFixes  ( Release Notes https://www.ibm.com/support/pages/node/7257011 )

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Mar 19, 2026
Updated Mar 19, 2026
Reserved Jan 20, 2026
CISA Vulnrichment
Updated Mar 19, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a