nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-17616 CVE-2026-17616
MEDIUM
Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
Record summary
CVE-2026-17616 has a selected CVSS score of 6.8 (medium).
Description
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 Reverse Proxy in certain configurations may provide weaker than expected cryptographic validation of user supplied data.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 12, 2026 · Source: CVE List
Affected products and versions
4| Product | Source | Version range | Status |
|---|---|---|---|
Security Verify AccessBrowse IBM / Security Verify Access | CVE List | 10.0 to ≤ 10.0.9.2 | affected |
Security Verify Access ContainerBrowse IBM / Security Verify Access Container | CVE List | 10.0 to ≤ 10.0.9.2 | affected |
Verify Identity AccessBrowse IBM / Verify Identity Access | CVE List | 11.0 to ≤ 11.0.3 | affected |
Verify Identity Access ContainerBrowse IBM / Verify Identity Access Container | CVE List | 11.0 to ≤ 11.0.3 | affected |
References
2ibm.comVendor advisorypatch
https://www.ibm.com/support/pages/node/7283079