IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 IBM Security Verify could allow a remote attacker to access sensitive information due to an inconsistent interpretation of an HTTP request by a reverse proxy.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7268253 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
07 Apr 2026, 16:32
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.ibm.com/support/pages/node/7268253 - Vendor Advisory | |
| CPE | cpe:2.3:a:ibm:verify_identity_access:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:verify_identity_access_container:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_container:*:*:*:*:*:*:*:* |
|
| First Time |
Ibm security Verify Access
Ibm verify Identity Access Container Ibm security Verify Access Container Ibm Ibm verify Identity Access |
01 Apr 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-01 21:16
Updated : 2026-04-07 16:32
NVD link : CVE-2026-2862
Mitre link : CVE-2026-2862
CVE.ORG link : CVE-2026-2862
JSON object : View
Products Affected
ibm
- verify_identity_access_container
- security_verify_access
- security_verify_access_container
- verify_identity_access
CWE
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
