VendorsIBMiall versions
Vulnerabilities

IBM I

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

261CVEs
CVE-2026-16931
IBM i is Affected By A Denial of Service Vulnerability []
Published 2026-08-12 · Analyzed
7.5EPSS 0.005
CVE-2026-17199
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Analyzed
7.5EPSS 0.005
CVE-2026-17229
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Analyzed
7.5EPSS 0.005
CVE-2026-17271
IBM i is Affected By Multiple Vulnerabilities in the Debug Server
Published 2026-08-12 · Analyzed
7.5EPSS 0.005
CVE-2026-16982
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Undergoing Analysis
7.5EPSS 0.005
CVE-2026-18077
IBM i is Affected By Multiple Vulnerabilities in Simple Mail Transfer Protocol
Published 2026-08-13 · Analyzed
7.5EPSS 0.005
CVE-2026-18846
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Analyzed
7.5EPSS 0.005
CVE-2025-36128
IBM MQ denial of service
Published 2025-10-16 · Analyzed
7.5EPSS 0.005
CVE-2022-43917
IBM WebSphere Application Server information disclosure
Published 2023-01-25 · Modified
7.5EPSS 0.005
CVE-2026-1376
IBM i Denial of Service
Published 2026-03-17 · Analyzed
7.5EPSS 0.005
CVE-2026-10852
Websphere Application Server is Affected By a Denial of Service
Published 2026-06-22 · Modified
7.5EPSS 0.005
CVE-2025-36047
IBM WebSphere Application Server Liberty denial of service
Published 2025-08-14 · Modified
7.5EPSS 0.005
CVE-2026-16853
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
7.5EPSS 0.004
CVE-2026-4942
IBM i is Affected by Algorithm Downgrade in Transport Layer Security []
Published 2026-07-17 · Analyzed
7.5EPSS 0.004
CVE-2025-33122
IBM i privilege escalation
Published 2025-06-17 · Analyzed
7.5EPSS 0.004
CVE-2026-17255
IBM i is Affected By Denial of Service Vulnerability []
Published 2026-09-04 · Analyzed
7.5EPSS 0.004
CVE-2026-17470
IBM i is Affected By Denial of Service Vulnerabilities in Line Printer Daemon [, ]
Published 2026-09-04 · Analyzed
7.5EPSS 0.004
CVE-2025-33142
IBM WebSphere Application Server information disclosure
Published 2025-08-14 · Analyzed
7.5EPSS 0.003
CVE-2026-10845
IBM WebSphere Application Server is affected by an authentication bypass vulnerability
Published 2026-06-22 · Analyzed
7.3EPSS 0.005
CVE-2026-17099
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-13 · Analyzed
7.3EPSS 0.005
CVE-2025-14915
IBM WebSphere Application Server Liberty is affected by a privilege escalation vulnerability
Published 2026-03-25 · Analyzed
7.2EPSS 0.006
CVE-2023-23470
IBM i privilege escalation
Published 2023-05-04 · Modified
7.2EPSS 0.005
CVE-2013-4002
XMLscanner.java in Apache Xerces2 Java Parser before 2.12.0, as used in the Java Runtime Environment (JRE) in IBM Java 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 as well as Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, JRockit R28.2.8 and earlier, JRockit R27.7.6 and earlier, Java SE Embedded 7u40 and earlier, and possibly other products allows remote attackers to cause a denial of service via vectors related to XML attribute names.
Published 2013-07-23 · Modified
7.1EPSS 0.247
CVE-2026-17094
IBM i is Affected By Path Traversal Vulnerability in Navigator for i
Published 2026-08-12 · Analyzed
7.1EPSS 0.005
CVE-2026-17248
IBM i is Affected By Multiple Vulnerabilities in the Debug Server
Published 2026-08-12 · Analyzed
7.1EPSS 0.005
CVE-2026-16896
IBM i is Affected By Multiple Vulnerabilities in Network Authentication Service
Published 2026-08-13 · Analyzed
7.1EPSS 0.001
CVE-2026-17268
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-12 · Analyzed
6.8EPSS 0.003
CVE-2024-47104
IBM i incorrect privilege assignment
Published 2024-12-18 · Analyzed
6.8EPSS 0.003
CVE-2019-4536
IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror for i might have user profiles with elevated privileges caused by incorrect processing during a restore of multiple user profiles. A user with restore privileges could exploit this vulnerability to obtain elevated privileges on the restored system. IBM X-Force ID: 165592.
Published 2019-08-29 · Modified
6.7EPSS 0.003
CVE-2021-39056
The IBM i 7.1, 7.2, 7.3, and 7.4 Extended Dynamic Remote SQL server (EDRSQL) could allow a remote authenticated user to send a specially crafted request and cause a denial of service. IBM X-Force ID: 214537.
Published 2022-01-13 · Modified
6.5EPSS 0.013
CVE-2021-20480
IBM WebSphere Application Server 7.0, 8.0, and 8.5 is vulnerable to server-side request forgery (SSRF). By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 197502.
Published 2021-04-08 · Modified
6.5EPSS 0.012
CVE-2022-22310
IBM WebSphere Application Server Liberty 21.0.0.10 through 21.0.0.12 could provide weaker than expected security. A remote attacker could exploit this weakness to obtain sensitive information and gain unauthorized access to JAX-WS applications. IBM X-Force ID: 217224.
Published 2022-01-19 · Modified
6.5EPSS 0.010
CVE-2020-4259
IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 could allow an authenticated user could manipulate cookie information and remove or add modules from the cookie to access functionality not authorized to. IBM X-Force ID: 175638.
Published 2020-05-14 · Modified
6.5EPSS 0.008
CVE-2022-31772
IBM MQ denial of service
Published 2022-11-11 · Modified
6.5EPSS 0.008
CVE-2026-17266
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-12 · Analyzed
6.5EPSS 0.007
CVE-2019-4738
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in further attacks against the system. IBM X-Force ID: 172753.
Published 2020-12-10 · Modified
6.5EPSS 0.005
CVE-2026-16692
IBM i is Affected By Multiple Vulnerabilities in Simple Mail Transfer Protocol
Published 2026-08-13 · Analyzed
6.5EPSS 0.005
CVE-2026-16929
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Undergoing Analysis
6.5EPSS 0.004
CVE-2024-22340
IBM Common Cryptographic Architecture information disclosure
Published 2025-03-11 · Analyzed
6.5EPSS 0.004
CVE-2026-18715
IBM i is Affected By Multiple Vulnerabilities in WebSphere Application Server Liberty
Published 2026-08-13 · Undergoing Analysis
6.5EPSS 0.004
← Prev4 / 7Next →