AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-18554

HIGH · CVSS 7.5

Source: NVD + CISA KEV + EPSS · Published 2026-08-14 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6 are vulnerable to a security flaw that enables remote authenticated attackers to access sensitive information by exploiting improper pathname restrictions to a restricted directory. Organizations using these versions should prioritize patching this vulnerability to mitigate the risk of unauthorized data exposure. Immediate action is recommended for environments handling sensitive data or regulated information.

CVE
CVE-2026-18554
Severity
HIGH
CVSS
7.5
EPSS
N/A

Original NVD Description

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.