CVE-2026-17209: IBM DB2 Mirror For I

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitrary scripts due to cross-site scripting.

Affected products

  • IBM DB2 Mirror For I: from 7.4, up to and including 7.6

Published 2026-08-14. Last modified 2026-08-21.