CVE-2026-18179: IBM Financial Transaction Manager (FTM) for RedHat OpenShift vulnerability
Published Sep 21, 2026
·Updated
IBM Financial Transaction Manager (FTM) could allow a remote attacker to clear active chat sessions due to improper authorization.
Affected Software
1 affected component
IBM Financial Transaction Manager (FTM) for RedHat OpenShift<=4.0.6.0 - 4.0.6.0 iFix6
4.0.6.0 iFix6 Refresh (Operator 4.4.6+20260807.081800)
4.0.7.0
4.0.8.0
4.0.9.0
4.0.10.0
Event History
Sep 21, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The available information identifies the attacker as remote, but does not state whether authentication or any particular privileges are required.
2
What is the known impact of successful exploitation?
A remote attacker could clear active chat sessions. The provided information does not describe impacts beyond session clearing.
3
Are default deployments affected?
The available information does not state whether the vulnerable condition is present in a default configuration or identify affected versions.