Kisco Systems

Kisco U

August 2026 IBM i CVE Announcements

Home : Kisco U : August 2026 IBM i CVE Announcements

In mid-August 2026, IBM issued 34 IBM i security alerts covering over 120 CVEs for IBM i, including several critical vulnerabilities.

Initial post: August 12, 2026
Updated: August 13, 2026

CVE CVSS Base Scores are classified as follows.

0.1 – 3.9: Low severity
4.0 – 6.9: Medium severity
7.0 – 8.9: High severity
9.0 – 10.0: Critical severity

The complete list of alerts with links to IBM support are posted below. Customers are advised to patch the critical issues ASAP. We also strongly advise customers to upgrade to the latest Access Client Solutions (ACS) release:

https://www.ibm.com/support/pages/ibm-i-access-acs-updates

Follow the IBM support links below for vulnerability descriptions, patch information and recommended actions:

Critical Severity

IBM i is Affected By Remote Code Execution Vulnerability
CVE-2026-16860
7.6, 7.5, 7.4, 7.3
CVSS Base score: 9.9

IBM Db2 Mirror for i is affected by multiple vulnerabilities
CVE-2026-17186, CVE-2026-17184, CVE-2026-17182, CVE-2026-17181, CVE-2026-16879, CVE-2026-17179, CVE-2026-16915, CVE-2026-17175, CVE-2026-18554, CVE-2026-17079, CVE-2026-16905, CVE-2026-17227, CVE-2026-17209, CVE-2026-17177, CVE-2026-17173, CVE-2026-18178, CVE-2026-16708, CVE-2026-17081
7.6, 7.5, 7.4
CVSS Base score: 5.3 - 9.9

IBM Db2 Mirror for i is vulnerable to OS command injection
CVE-2026-16956
7.6, 7.5, 7.4
CVSS Base score: 9.8

IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daemon
CVE-2026-17218
7.6, 7.5, 7.4, 7.3
CVSS Base score: 9.8

IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-17083, CVE-2026-16907, CVE-2026-17248, CVE-2026-17271, CVE-2026-17082
7.6, 7.5, 7.4, 7.3
CVSS Base score: 7.1 - 9.8

IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-16694, CVE-2026-17101, CVE-2026-17099, CVE-2026-16904, CVE-2026-17095, CVE-2026-17094, CVE-2026-17268, CVE-2026-17266, CVE-2026-17276, CVE-2026-18099, CVE-2026-18098, CVE-2026-18235, CVE-2026-18713, CVE-2026-18683, CVE-2026-18250, CVE-2026-18106, CVE-2026-18144, CVE-2026-18148, CVE-2026-18150, CVE-2026-18246, CVE-2026-18847, CVE-2026-66010
7.6, 7.5, 7.4, 7.3
CVSS Base score: 3.0 - 9.6

High Severity

IBM i Is Affected By Multiple Vulnerabilities in IBM Java SDK and IBM Java Runtime
CVE-2026-18193, CVE-2026-18249, CVE-2026-17476
7.6, 7.5, 7.4, 7.3
CVSS Base score:   4.8 - 8.9

IBM i is Affected By An Unauthorized Privileges Vulnerability in SQL
CVE-2026-16722
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.8

IBM i is Affected By Multiple Vulnerabilities in Domain Name System
CVE-2026-16906, CVE-2026-16856
7.6, 7.5
CVSS Base score: 8.8

IBM i is Affected By A Privilege Escalation Vulnerability
CVE-2026-18669
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.8

IBM i is Affected By A Remote Code Execution Vulnerability
CVE-2026-16975
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.8

IBM i is Affected By An Improper Validation Vulnerability in PASE
CVE-2026-16987
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.8

IBM i is Affected By Remote Code Execution Vulnerabilities
CVE-2026-17642, CVE-2026-17417
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.8

IBM i is Affected By Multiple Vulnerabilities in WebSphere Application Server Liberty
CVE-2026-16674, CVE-2026-18101, CVE-2026-18715
7.6, 7.5, 7.4, 7.3
CVSS Base score:   6.5 - 8.8

IBM i is Affected By Multiple Vulnerabilities in Host Servers
CVE-2026-17223, CVE-2026-17206, CVE-2026-17208, CVE-2026-16929, CVE-2026-17004, CVE-2026-18846, CVE-2026-17197, CVE-2026-17217, CVE-2026-17199, CVE-2026-17229, CVE-2026-16982, CVE-2026-17220
7.3
CVSS Base score:   5.3 - 8.8

IBM i is Affected By Multiple Vulnerabilities in Java Secure Sockets Extension
CVE-2026-17029, CVE-2026-18511, CVE-2026-18068, CVE-2026-18086
7.6, 7.5, 7.4, 7.3
CVSS Base score:   4.3 - 8.8

IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-17111, CVE-2026-17110, CVE-2026-17109, CVE-2026-17420, CVE-2026-17222, CVE-2026-17419, CVE-2026-17418
7.6, 7.5, 7.4, 7.3
CVSS Base score: 4.3 - 8.8

IBM i is Affected By Multiple Vulnerabilities in Simple Mail Transfer Protocol
CVE-2026-18077, CVE-2026-16815, CVE-2026-16692
7.6, 7.5, 7.4, 7.3
CVSS Base score:   6.5 - 8.6

IBM i is Affected By Multiple Vulnerabilities in NetServer
CVE-2026-16858, CVE-2026-16867, CVE-2026-16868, CVE-2026-16853, CVE-2026-17226, CVE-2026-16859, CVE-2026-16878, CVE-2026-16861, CVE-2026-17212, CVE-2026-18020, CVE-2026-17649, CVE-2026-16871, CVE-2026-18671, CVE-2026-18680, CVE-2026-17502
7.6, 7.5, 7.4, 7.3
CVSS Base score:   4.3 - 8.6

IBM i is Affected By Multiple SQL Vulnerabilities
CVE-2026-16908, CVE-2026-16967
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.5

IBM i is Affected By An Improper Validation Vulnerability
CVE-2026-17498
7.6, 7.5, 7.4, 7.3
CVSS Base score:   8.4

IBM i is Affected By Improper Validation Vulnerability in Line Printer Daemon
CVE-2026-17445
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.2

IBM i is Affected By A Prvilege Escalation Vulnerability
CVE-2026-18509
7.6, 7.5, 7.4, 7.3
CVSS Base score:   8.2

IBM i is Affected By a Denial of Service in HTTP Server
CVE-2026-17272
7.6, 7.5, 7.4, 7.3
CVSS Base score: 8.2

IBM i is Affected By Multiple Vulnerabilities in Digital Certificate Manager
CVE-2026-17088, CVE-2026-17075, CVE-2026-17071, CVE-2026-17069, CVE-2026-17045, CVE-2026-17043
7.6, 7.5, 7.4, 7.3
CVSS Base score:   2.7 - 8.1

IBM i is Affected By An Improper Management Vulnerability in HTTP Server
CVE-2026-18071
7.6, 7.5, 7.4, 7.3
CVSS Base score:   7.8

IBM i is Affected By Multiple Vulnerabilities in Network Authentication Service
CVE-2026-16898, CVE-2026-16896
7.6, 7.5, 7.4, 7.3
CVSS Base score:   7.1 - 7.8

IBM i is Affected By Out-of-Bounds Read Vulnerability
CVE-2026-16863
7.6, 7.5, 7.4, 7.3
CVSS Base score: 7.7

IBM i is Affected By SQL Injection Vulnerability in Db2 Mirror
CVE-2026-16961
7.6, 7.5, 7.4
CVSS Base score: 7.6

IBM i is Affected By A Denial of Service Vulnerability
CVE-2026-16931
7.6, 7.5, 7.4, 7.3
CVSS Base score: 7.5

IBM i is Affected By A Denial of Service Vulnerability DST/SST
CVE-2026-16887
7.6
CVSS Base score: 7.5

Medium Severity

IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
CVE-2026-17216, CVE-2026-17076, CVE-2026-17077, CVE-2026-17074
7.6, 7.5, 7.4, 7.3
CVSS Base score:   3.1 - 5.3

IBM i is Affected By A Denial of Service Vulnerability in DRDA / DDM
CVE-2026-17078
7.6, 7.5, 7.4, 7.3
CVSS Base score:   5.3

IBM i is Affected By An Improper Privilege Management Vulnerability in LDAP
CVE-2026-17438
7.6, 7.5, 7.4, 7.3
CVSS Base score:   4.4