CVE-2026-16713: IBM Documentation Offline is vulnerable to information disclosure, session forgery and remote code execution
IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misconfiguration where the documentation server binds to an unrestricted IP address.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Documentation Offlineto a version that resolves this vulnerability.Fixed in 1.5.1