PT-2026-108222 · Ibm · Ibm Security Verify Access+3

CVE-2026-12091

·

Published

2026-10-08

·

Updated

2026-10-08

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a denial of service due to a heap-based out-of-bounds read. A remote attacker could send a specially crafted request that causes a limited out‑of‑bounds memory read.

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-12091

Affected Products

Ibm Security Verify Access
Ibm Security Verify Access Container
Verify Identity Access
Ibm Verify Identity Access Container