CVE-2026-11921: Security vulnerabilities have been addressed in IBM Verify Identity Access and IBM Security Verify Access
Published Sep 15, 2026
·Updated
IBM Verify Identity Access containers may not apply management password change operations correctly.
Affected Software
1 affected component
IBM Verify Identity Access
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Security Verify Accessto a version that resolves this vulnerability.Fixed in 10.0.9.2 IF2 - Upgrade
Upgrade
IBM Verify Identity Accessto a version that resolves this vulnerability.Fixed in 11.0.3 IF2 - Operational
For IBM Verify Identity Access containers, verify that management password change operations are applied correctly after updating to IBM Verify Identity Access v11.0.3 IF2 (containers may not apply management password change operations correctly).
Event History
Sep 15, 2026
CVE Published
via MITRE·05:27 PM
Data Sourced
via MITRE·05:27 PM
RemedyDescriptionWeakness
Frequently Asked Questions
1
Which deployment type is identified as affected?
The issue is identified in IBM Verify Identity Access containers.
2
What operation may be handled incorrectly?
Management password change operations may not be applied correctly.