CVE-2026-18096: IBM DB2

Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.

Affected products

  • IBM DB2: version 12.1.5 only

Published 2026-08-12. Last modified 2026-08-17.