CERT‑FR Issues Alert on Multiple IBM Product Vulnerabilities

On July 3 2026, France’s CERT‑FR issued an alert describing multiple security weaknesses in IBM software. The notice cites 24 IBM security bulletins issued between June 26 and July 2, 2026, and lists several CVE identifiers, including CVE‑2021‑23337, CVE‑2024‑12086, and CVE‑2026‑10845, among others. Affected products include DB2 Big SQL on IBM Software Hub versions below 5.4, DB2 Genius Hub below 1.1.3, SOAR QRadar Plugin App below 5.6.5, WebSphere Application Server Liberty below 26.0.0.8, and WebSphere Application Server and Remote Server versions 8.x and 9.x below their latest minor releases. Risks identified are data integrity and confidentiality loss, policy bypass, remote denial‑of‑service, remote code execution, server‑side request forgery, cross‑site scripting, and privilege escalation. CERT‑FR advises users to consult the listed IBM bulletins for patches and updates.

Summary of content from

source

Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.


Posted