CVE-2026-18249

EUVD-2026-58468
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges due to improper validation of pointers read from Java-controlled addresses.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.4 HIGH
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 30.36%
Affected Products (NVD)
VendorProductVersion
ibmi
7.3
ibmi
7.4
ibmi
7.5
ibmi
7.6
𝑥
= Vulnerable software versions