VendorsIBMiall versions
Vulnerabilities

IBM I

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

261CVEs
CVE-2026-17226
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.4EPSS 0.004
CVE-2022-40750
IBM WebSphere Application Server cross-site scripting
Published 2022-11-11 · Modified
5.4EPSS 0.004
CVE-2023-26283
IBM WebSphere Application Server cross-site scripting
Published 2023-03-22 · Modified
5.4EPSS 0.004
CVE-2025-2950
IBM i improper HTTP header neutralization
Published 2025-04-18 · Analyzed
5.4EPSS 0.003
CVE-2026-1561
IBM WebSphere Application Server Liberty Server-Side Request Forgery
Published 2026-03-25 · Analyzed
5.4EPSS 0.003
CVE-2026-16892
IBM i is Affected By An Improper Authentication Vulnerability in Network Authentication Service []
Published 2026-09-04 · Analyzed
5.4EPSS 0.003
CVE-2025-3218
IBM i improper certificate validation
Published 2025-05-07 · Analyzed
5.4EPSS 0.003
CVE-2026-17274
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
5.4EPSS 0.002
CVE-2026-11383
Cross-site Scripting in IBM WebSphere Application Server shipped with Tivoli System Automation Application Manager
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2024-55896
IBM PowerHA SystemMirror for i clickjacking
Published 2025-01-03 · Analyzed
5.4EPSS 0.002
CVE-2020-4365
IBM WebSphere Application Server 8.5 is vulnerable to server-side request forgery. By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 178964.
Published 2020-05-14 · Modified
5.3EPSS 0.014
CVE-2020-4761
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 188895.
Published 2021-01-05 · Modified
5.3EPSS 0.013
CVE-2022-22481
IBM Navigator for i 7.2, 7.3, and 7.4 (heritage version) could allow a remote attacker to obtain access to the web interface without valid credentials. By modifying the sign on request, an attacker can gain visibility to the fully qualified domain name of the target system and the navigator tasks page, however they do not gain the ability to perform those tasks on the system or see any specific system data. IBM X-Force ID: 225899.
Published 2022-05-09 · Modified
5.3EPSS 0.012
CVE-2022-22473
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to obtain sensitive information caused by improper handling of Administrative Console data. This information could be used in further attacks against the system. IBM X-Force ID: 225347.
Published 2022-07-14 · Modified
5.3EPSS 0.011
CVE-2023-45177
IBM MQ denial of service
Published 2024-03-20 · Analyzed
5.3EPSS 0.006
CVE-2026-16861
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Undergoing Analysis
5.3EPSS 0.005
CVE-2026-17076
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17077
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17078
IBM i is Affected By A Denial of Service Vulnerability in DRDA / DDM []
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17212
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17216
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-18020
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2024-31878
IBM i information disclosure
Published 2024-06-07 · Modified
5.3EPSS 0.004
CVE-2026-16859
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Undergoing Analysis
5.3EPSS 0.004
CVE-2026-17649
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.3EPSS 0.004
CVE-2026-17476
IBM i Is Affected By Multiple Vulnerabilities in IBM Java SDK and IBM Java Runtime
Published 2026-08-13 · Analyzed
5.3EPSS 0.004
CVE-2023-47741
IBM i information disclosure
Published 2023-12-18 · Modified
5.3EPSS 0.003
CVE-2026-18150
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-12 · Analyzed
5.3EPSS 0.003
CVE-2026-18086
IBM i is Affected By Multiple Vulnerabilities in Java Secure Sockets Extension
Published 2026-08-13 · Analyzed
5.3EPSS 0.001
CVE-2026-16693
IBM i is Affected By Cryptographic Algorithm Weakness in DCM []
Published 2026-09-04 · Analyzed
4.9EPSS 0.001
CVE-2026-17438
IBM i is Affected By An Improper Privilege Management Vulnerability in LDAP []
Published 2026-08-13 · Analyzed
4.4EPSS 0.001
CVE-2026-18073
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
4.4EPSS 0.001
CVE-2024-51464
IBM i authentication bypass
Published 2024-12-21 · Modified
4.31 PoCEPSS 0.014
CVE-2019-4377
IBM Sterling B2B Integrator 6.0.0.0 and 6.0.0.1 reveals sensitive information from a stack trace that could be used in further attacks against the system. IBM X-Force ID: 162803.
Published 2019-06-25 · Modified
4.3EPSS 0.013
CVE-2022-43857
IBM Navigator for i information disclosure
Published 2022-12-22 · Modified
4.3EPSS 0.010
CVE-2022-43858
IBM Navigator for i information disclosure
Published 2022-12-22 · Modified
4.3EPSS 0.010
CVE-2020-4299
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 could expose sensitive information to a user through a specially crafted HTTP request. IBM X-Force ID: 176606.
Published 2020-05-14 · Modified
4.3EPSS 0.010
CVE-2026-17088
IBM i is Affected By Multiple Vulnerabilities in Digital Certificate Manager
Published 2026-08-13 · Analyzed
4.3EPSS 0.005
CVE-2026-18106
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-12 · Analyzed
4.3EPSS 0.005
CVE-2022-43860
IBM Navigator for i SQL injection
Published 2022-12-22 · Modified
4.3EPSS 0.005
← Prev6 / 7Next →