CVE-2026-11980: IBM Aspera

High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.

Affected products

  • IBM Aspera: from 1.0.5, up to and including 1.0.19

Published 2026-07-30. Last modified 2026-08-13.