CVE-2026-12118

EUVD-2026-51200
IBM webMethods Integration (on prem) 10.15, 10.11 could allow an unauthenticated remote attacker to execute arbitrary code on the system due to the deserialization of untrusted data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 45.28%
Affected Products (NVD)
VendorProductVersion
ibmwebmethods_integration
10.11
ibmwebmethods_integration
10.15
𝑥
= Vulnerable software versions