CVE-2026-12118: IBM Webmethods Integration

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM webMethods Integration (on prem) 10.15, 10.11 could allow an unauthenticated remote attacker to execute arbitrary code on the system due to the deserialization of untrusted data.

Affected products

  • IBM Webmethods Integration: version 10.11 only; version 10.15 only

Published 2026-07-30. Last modified 2026-08-10.