CyberRota Analysis
AI-GeneratedIBM i versions 7.3 to 7.6 are susceptible to stored cross-site scripting, enabling authenticated users to inject malicious JavaScript into the Web UI. This could compromise the integrity of user sessions and potentially lead to credential disclosure. Organizations using these versions should prioritize remediation to protect against unauthorized access and data breaches.
CVE
CVE-2026-16694
Severity
MEDIUM
CVSS
6.4
EPSS
0.18%
Java
Original NVD Description
IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.