What is CVE-2026-13460?
A hardcoded token was discovered in the IBM Storage Scale GUI source code, used for inter-node cluster communication and REST API authentication. This vulnerability could allow unauthorized access to cluster communication. Users are advised to apply the necessary updates immediately.
Azərbaycanca: IBM Storage Scale GUI-da identifikasiya üçün istifadə edilən hardcoded token aşkar edilib. Bu token REST API autentifikasiyası üçün tətbiq olunduğundan, zəiflikdən istifadə edən şəxs potensial olaraq klaster kommunikasiyasına müdaxilə edə bilər. İstifadəçilərə təcili olaraq verilənləri yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-798; shared vendor: IBM
FAQ2
What can an attacker potentially do by exploiting CVE-2026-13460?
An attacker exploiting this vulnerability could potentially interfere with cluster communication.
In which component of IBM Storage Scale GUI was CVE-2026-13460 discovered?
The vulnerability involves a hardcoded token used for REST API authentication.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.