CVE-2026-18065: IBM i vulnerability
Published Sep 10, 2026
·Updated
IBM i could allow a remote unauthenticated attacker to gain access to sensitive information through session IP binding bypass in Navigator for i.
Affected Software
4 affected components
IBM i<=7.6
IBM i<=7.5
IBM i<=7.4
IBM i<=7.3
Event History
Sep 10, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Does exploitation require prior authentication?
No. The issue is described as exploitable by a remote unauthenticated attacker.
2
What access path is involved in the exposure?
The vulnerability involves a session IP binding bypass in Navigator for i, which could allow access to sensitive information.