CVE-2026-6928: IBM Concert
Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.
IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been freed. This allows an attacker who can influence program execution or input may exploit this condition to corrupt memory, cause application crashes, or execute arbitrary code.
Affected products
- IBM Concert: from 1.0.0, up to and including 3.0.0
Published 2026-09-23. Last modified 2026-09-29.