CVE-2026-13276: Security vulnerabilities have been addressed in IBM Verify Identity Access and IBM Security Verify Access
Published Sep 14, 2026
·Updated
IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verify Access 10.0.0 through 10.0.9.2 Interim Fix 001 and IBM Verify Identity Access Container 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verify Access Container 10.0.0 through 10.0.9.2 Interim Fix 001.
Affected Software
4 affected components
IBM IBM Verify Identity Access>=11.0.0<=11.0.3 Interim Fix 001
IBM IBM Security Verify Access>=10.0.0<=10.0.9.2 Interim Fix 001
IBM IBM Verify Identity Access Container>=11.0.0<=11.0.3 Interim Fix 001
IBM IBM Security Verify Access Container>=10.0.0<=10.0.9.2 Interim Fix 001
Event History
Sep 14, 2026
CVE Published
via MITRE·08:12 PM
Data Sourced
via MITRE·08:12 PM
RemedyDescriptionWeakness
Frequently Asked Questions
1
Which deployments fall within the affected version ranges?
The affected ranges are IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix 001, IBM Security Verify Access 10.0.0 through 10.0.9.2 Interim Fix 001, and the corresponding IBM Verify Identity Access Container and IBM Security Verify Access Container releases.
2
What type of vulnerability is identified?
The listed weakness is cross-site scripting (XSS).