IBM Verify Identity Access
13 known vulnerabilities in IBM Verify Identity Access, 2 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-12358 CVSS 7.5 high IBM Verify Identity Access could allow a remote attacker to cause a denial of service due to insufficient validation of incoming request…
- CVE-2026-12101 CVSS 8.1 high IBM Verify Identity Access could allow an administrator to execute additional commands they are not entitled to due to improper validation…
- CVE-2026-11934 CVSS 7.2 high IBM Verify Identity Access could allow an administrator to execute additional commands they are not entitled to due to improper validation…
- CVE-2026-11929 CVSS 7.5 high IBM Security Verify Identity Access Reverse Proxy in certain configurations may provide weaker than expected cryptographic validation of…
- CVE-2026-11928 CVSS 9.8 critical IBM Verify Identity Access is vulnerable to a buffer overflow attack.
- CVE-2026-11927 CVSS 6.5 medium IBM Security Verify Identity Access reverse proxy may allow parameters to be injected in requests to third party services.
- CVE-2026-11926 CVSS 7.5 high IBM Verify Identity Access could allow a remote attacker to cause a denial of service due to insufficient validation of incoming request…
- CVE-2026-11921 CVSS 9.1 critical IBM Verify Identity Access containers may not apply management password change operations correctly.
- CVE-2026-13277 CVSS 4.7 medium IBM Verify Identity Access could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a…
- CVE-2026-13276 CVSS 6.1 medium IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verify Access 10.0.0 through 10.0.9.2 Interim Fix 001…
- CVE-2026-13272 CVSS 5.4 medium IBM Verify Identity Access is missing origin validation which could allow a remote attacker to perform operations as the victim and…
- CVE-2026-13260 CVSS 7.5 high IBM Verify Identity Access could allow a remote attacker to cause a denial of service due to insufficient validation of incoming request…
- CVE-2026-13297 CVSS 7.5 high IBM Verify Identity Access Advanced Access Control may be vulnerable to an information disclosure attack.