What is CVE-2026-18098?
This vulnerability affects IBM i versions 7.3, 7.4, 7.5, and 7.6, allowing a remote authenticated attacker to obtain sensitive information and compromise system integrity via an XML injection flaw. Organizations using the affected versions should immediately apply the security updates provided by IBM.
Azərbaycanca: IBM i əməliyyat sisteminin 7.3, 7.4, 7.5 və 7.6 versiyalarında aşkarlanan bu boşluq uzaqdan autentifikasiya olunmuş təcavüzkarın XML injection qüsuru vasitəsilə həssas məlumatları əldə etməsinə və sistem bütövlüyünü pozmasına imkan verir. Təsirə məruz qalan versiyalardan istifadə edən təşkilatlar dərhal IBM tərəfindən təqdim olunan təhlükəsizlik yeniləmələrini tətbiq etməlidirlər.
Related CVEs
link basis: same weakness class CWE-611; shared vendor: IBM
FAQ1
How can the CVE-2026-18098 vulnerability in IBM i affect the system?
The CVE-2026-18098 vulnerability allows a remote authenticated attacker to obtain sensitive information and compromise system integrity via an XML injection flaw.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.