CVE-2026-18846: IBM I
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to a buffer overflow from improperly validating client data. By sending malformed requests to one of the host servers, a remote attacker could leverage this vulnerability to cause a denial-of-server (DoS) for that server.
Affected products
- IBM I: from 7.3, up to and including 7.6
Published 2026-08-13. Last modified 2026-08-17.