Back

MEDIUM

Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access

Published Jul 17, 2026

Description

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability. An attacker could exploit this vulnerability using a specially crafted request to redirect a victim to arbitrary Web sites.

Affected products

Remediation

Vendor solution

IBM encourages customers to update their systems promptly.Appliance:Affected Products and VersionsFix availabilityIBM Verify Identity Access 11.0 - 11.0.2Download IBM Verify Identity Access v11.0.3IBM Security Verify Access 10.0 0 - 10.0.9.1Download IBM Security Verify Access v10.0.9.2Container:Container Download

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner ibm
Published Jul 17, 2026
Updated Jul 20, 2026
Reserved Apr 28, 2026

CISA Vulnrichment

Updated Jul 20, 2026

NVD

Status Analyzed
Modified Jul 30, 2026

Red Hat

No data

ENISA EUVD

Assigner ibm
Published Jul 17, 2026
Updated Jul 20, 2026

GitHub

No data