CVE-2026-9836: IBM DataStage Flow Designer application is affected by an information disclosure vulnerability
IBM DataStage Flow Designer application is affected by an information disclosure vulnerability.
Other sources
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information disclosure vulnerability.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM InfoSphere Information Serverto a version that resolves this vulnerability.Fixed in 11.7.1.0 - Upgrade
Upgrade
IBM InfoSphere Information Serverto a version that resolves this vulnerability.Fixed in 11.7.1.6 - Upgrade
Upgrade
IBM InfoSphere Information Serverto a version that resolves this vulnerability.Fixed in 11.7.1.6 Service pack 3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9836?
The severity of CVE-2026-9836 is rated high with a CVSS score of 7.5.
How do I fix CVE-2026-9836?
To fix CVE-2026-9836, you should update IBM InfoSphere Information Server to version 11.7.1.7 or later.
What type of vulnerability is CVE-2026-9836?
CVE-2026-9836 is an information disclosure vulnerability affecting the IBM DataStage Flow Designer application.
Which versions of IBM software are affected by CVE-2026-9836?
IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6 are affected by CVE-2026-9836.
What is the impact of CVE-2026-9836?
The impact of CVE-2026-9836 is potential information disclosure which could expose sensitive data.