CVE-2026-11929: IBM Security Verify Access

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Security Verify Identity Access Reverse Proxy in certain configurations may provide weaker than expected cryptographic validation of user supplied data.

Affected products

  • IBM Security Verify Access
  • IBM Security Verify Access Container
  • IBM Verify Identity Access
  • IBM Verify Identity Access Container

Published 2026-09-15. Last modified 2026-09-16.