CVE-2026-12667
EUVD-2026-7887215.09.2026, 18:17
IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow an authenticated attacker to read files from a vulnerable .NET client or cause limited denial of service due to improper handling of XML external entities in RFH2 folder parsing.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| ibm | mq | 9.1.0.0 ≤ | CNA |
| ibm | mq | 9.2.0.0 ≤ | CNA |
| ibm | mq | 9.3.0.0 ≤ | CNA |
| ibm | mq | 9.4.0.0 ≤ | CNA |
| ibm | mq | 10.0.0.0 | CNA |