OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-19267

MEDIUM · CVSS 6.2 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

IBM Financial Transaction Manager for RedHat OpenShift is vulnerable due to missing authentication on the Business Rules Manager commands REST endpoint, allowing local actors to execute unauthenticated commands. This can lead to resource exhaustion, potentially disrupting business-rule management functions. Organizations using this software should prioritize remediation to prevent unauthorized access and ensure operational continuity.

CVE
CVE-2026-19267
Severity
MEDIUM
CVSS
6.2
EPSS
0.13%
Java

Original NVD Description

IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to missing authentication on the Business Rules Manager commands REST endpoint (`CommandsResource.java:31`). A local actor can invoke unauthenticated commands to cause resource exhaustionand halt business-rule management functions.

Related CVEs

Other vulnerabilities affecting the same vendor(s)