CVE-2026-14893: IBM Observability With Instana Agent
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Observability with Instana (Agent) Build 1.0.303 through 1.0.320 IBM Instana Node.js tracer component @instana/core version 6.2.1 is vulnerable to prototype pollution through its configuration normalization API.
Affected products
- IBM Observability With Instana Agent
Published 2026-07-28. Last modified 2026-07-30.