CVE-2026-84244: XSS
IBM Security Guardium Data Protection is vulnerable to stored cross-site scripting (XSS) in the Quick Search results grid. An unauthenticated attacker who can influence monitored database traffic could execute malicious script in the browser of an authenticated Guardium user.
Affected Software
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Authenticated IBM Security Guardium Data Protection users who view the Quick Search results grid are exposed if monitored database traffic contains attacker-controlled content. The attacker does not need to be authenticated to Guardium, but must be able to influence the monitored database traffic.
What does an attacker need to exploit the vulnerability?
The attacker needs a way to place malicious script content into database traffic that Guardium monitors. Exploitation then requires an authenticated Guardium user to load the affected Quick Search results grid in a browser.
How can teams determine whether they may be affected?
Review whether Guardium monitors database traffic that can be influenced by untrusted or attacker-controlled users, applications, or inputs. Also identify authenticated users who use the Quick Search results grid, as their browsers are the execution target.