AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-12359

HIGH · CVSS 8.1 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

IBM Security Verify Access and Verify Identity Access products are vulnerable due to a flaw in how a reverse proxy interprets HTTP requests, potentially allowing remote attackers to access sensitive information. Organizations using these affected versions should prioritize patching this vulnerability to mitigate the risk of unauthorized data exposure. Immediate action is recommended for enterprises relying on these IBM security solutions to protect their sensitive data.

CVE
CVE-2026-12359
Severity
HIGH
CVSS
8.1
EPSS
0.32%

Original NVD Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 could allow a remote attacker to access sensitive information due to an inconsistent interpretation of an HTTP request by a reverse proxy.