CVE-2026-18161

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to falsify transaction audit logs due to improper validation of a client-supplied HTTP header.

  • Published Sep 22, 2026
  • CVSS 4.3 medium
  • 0.2% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-18161 at the National Vulnerability Database