CVE-2026-16907: IBM I
High severity, CVSS 7.6. EPSS: 0.6% chance of exploitation in the next 30 days.
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to improper bounds checking.
Affected products
- IBM I: from 7.3, up to and including 7.6
Published 2026-08-12. Last modified 2026-08-17.