CVE-2026-82096: IBM DataStage on Cloud Pak for Data vulnerability
Published Sep 21, 2026
·Updated
DataStage on Cloud Pak for Data could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
Affected Software
1 affected componentFixes available
IBM DataStage on Cloud Pak for Data<=5.4.0.0
Event History
Sep 21, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The attacker must be remote and authenticated. The provided information does not indicate that unauthenticated users can exploit it.
2
What is the potential impact if exploitation succeeds?
A successful attacker could execute arbitrary operating-system commands through IBM DataStage on Cloud Pak for Data.