CVE-2026-3676

IBM Cloud APM, Base Private 8.1.4 and IBM Cloud APM, Advanced Private 8.1.4 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in the data query logic of the Fenced environment.
References
Link Resource
https://www.ibm.com/support/pages/node/7273649 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:advanced_private:*:*:*
cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:base_private:*:*:*

History

02 Jun 2026, 19:41

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7273649 - () https://www.ibm.com/support/pages/node/7273649 - Vendor Advisory
First Time Ibm cloud Application Performance Managemen
Ibm
CPE cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:base_private:*:*:*
cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:advanced_private:*:*:*

27 May 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-27 14:16

Updated : 2026-06-02 19:41


NVD link : CVE-2026-3676

Mitre link : CVE-2026-3676

CVE.ORG link : CVE-2026-3676


JSON object : View

Products Affected

ibm

  • cloud_application_performance_managemen
CWE
CWE-1284

Improper Validation of Specified Quantity in Input