CVE-2026-5926: Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
IBM Security Verify Access uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Other sources
IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What are the implications of CVE-2026-5926?
CVE-2026-5926 could allow an attacker to decrypt sensitive information due to the use of weaker than expected cryptographic algorithms in affected IBM products.
How do I remediate CVE-2026-5926?
To remediate CVE-2026-5926, upgrade to the latest versions of IBM Verify Identity Access and IBM Security Verify Access that address the identified vulnerabilities.
Which products are affected by CVE-2026-5926?
CVE-2026-5926 affects IBM Verify Identity Access Container versions 11.0 to 11.0.2 and IBM Security Verify Access Container versions 10.0 to 10.0.9.1.
What is the risk level of CVE-2026-5926?
CVE-2026-5926 poses a high risk due to the potential exposure of highly sensitive information.
Has a fix been provided for CVE-2026-5926?
Yes, IBM has provided updates to fix CVE-2026-5926 in the affected products.