August 2026 IBM i CVE Announcements
In mid-August 2026, IBM issued 34 IBM i security alerts covering over 120 CVEs for IBM i, including several critical vulnerabilities.
Initial post: August 12, 2026 Updated: August 13, 2026
CVE CVSS Base Scores are classified as follows.
0.1 – 3.9: Low severity 4.0 – 6.9: Medium severity 7.0 – 8.9: High severity 9.0 – 10.0: Critical severity
The complete list of alerts with links to IBM support are posted below. Customers are advised to patch the critical issues ASAP. We also strongly advise customers to upgrade to the latest Access Client Solutions (ACS) release:
Follow the IBM support links below for vulnerability descriptions, patch information and recommended actions:
IBM i is Affected By Remote Code Execution Vulnerability CVE-2026-16860 7.6, 7.5, 7.4, 7.3 CVSS Base score: 9.9
IBM Db2 Mirror for i is affected by multiple vulnerabilities CVE-2026-17186, CVE-2026-17184, CVE-2026-17182, CVE-2026-17181, CVE-2026-16879, CVE-2026-17179, CVE-2026-16915, CVE-2026-17175, CVE-2026-18554, CVE-2026-17079, CVE-2026-16905, CVE-2026-17227, CVE-2026-17209, CVE-2026-17177, CVE-2026-17173, CVE-2026-18178, CVE-2026-16708, CVE-2026-17081 7.6, 7.5, 7.4 CVSS Base score: 5.3 - 9.9
IBM Db2 Mirror for i is vulnerable to OS command injection CVE-2026-16956 7.6, 7.5, 7.4 CVSS Base score: 9.8
IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daemon CVE-2026-17218 7.6, 7.5, 7.4, 7.3 CVSS Base score: 9.8
IBM i is Affected By Multiple Vulnerabilities in the Debug Server CVE-2026-17083, CVE-2026-16907, CVE-2026-17248, CVE-2026-17271, CVE-2026-17082 7.6, 7.5, 7.4, 7.3 CVSS Base score: 7.1 - 9.8
IBM i is Affected By Multiple Vulnerabilities in Navigator for i CVE-2026-16694, CVE-2026-17101, CVE-2026-17099, CVE-2026-16904, CVE-2026-17095, CVE-2026-17094, CVE-2026-17268, CVE-2026-17266, CVE-2026-17276, CVE-2026-18099, CVE-2026-18098, CVE-2026-18235, CVE-2026-18713, CVE-2026-18683, CVE-2026-18250, CVE-2026-18106, CVE-2026-18144, CVE-2026-18148, CVE-2026-18150, CVE-2026-18246, CVE-2026-18847, CVE-2026-66010 7.6, 7.5, 7.4, 7.3 CVSS Base score: 3.0 - 9.6
IBM i Is Affected By Multiple Vulnerabilities in IBM Java SDK and IBM Java Runtime CVE-2026-18193, CVE-2026-18249, CVE-2026-17476 7.6, 7.5, 7.4, 7.3 CVSS Base score: 4.8 - 8.9
IBM i is Affected By An Unauthorized Privileges Vulnerability in SQL CVE-2026-16722 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.8
IBM i is Affected By Multiple Vulnerabilities in Domain Name System CVE-2026-16906, CVE-2026-16856 7.6, 7.5 CVSS Base score: 8.8
IBM i is Affected By A Privilege Escalation Vulnerability CVE-2026-18669 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.8
IBM i is Affected By A Remote Code Execution Vulnerability CVE-2026-16975 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.8
IBM i is Affected By An Improper Validation Vulnerability in PASE CVE-2026-16987 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.8
IBM i is Affected By Remote Code Execution Vulnerabilities CVE-2026-17642, CVE-2026-17417 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.8
IBM i is Affected By Multiple Vulnerabilities in WebSphere Application Server Liberty CVE-2026-16674, CVE-2026-18101, CVE-2026-18715 7.6, 7.5, 7.4, 7.3 CVSS Base score: 6.5 - 8.8
IBM i is Affected By Multiple Vulnerabilities in Host Servers CVE-2026-17223, CVE-2026-17206, CVE-2026-17208, CVE-2026-16929, CVE-2026-17004, CVE-2026-18846, CVE-2026-17197, CVE-2026-17217, CVE-2026-17199, CVE-2026-17229, CVE-2026-16982, CVE-2026-17220 7.3 CVSS Base score: 5.3 - 8.8
IBM i is Affected By Multiple Vulnerabilities in Java Secure Sockets Extension CVE-2026-17029, CVE-2026-18511, CVE-2026-18068, CVE-2026-18086 7.6, 7.5, 7.4, 7.3 CVSS Base score: 4.3 - 8.8
IBM i is Affected By Multiple Vulnerabilities in SQL CVE-2026-17111, CVE-2026-17110, CVE-2026-17109, CVE-2026-17420, CVE-2026-17222, CVE-2026-17419, CVE-2026-17418 7.6, 7.5, 7.4, 7.3 CVSS Base score: 4.3 - 8.8
IBM i is Affected By Multiple Vulnerabilities in Simple Mail Transfer Protocol CVE-2026-18077, CVE-2026-16815, CVE-2026-16692 7.6, 7.5, 7.4, 7.3 CVSS Base score: 6.5 - 8.6
IBM i is Affected By Multiple Vulnerabilities in NetServer CVE-2026-16858, CVE-2026-16867, CVE-2026-16868, CVE-2026-16853, CVE-2026-17226, CVE-2026-16859, CVE-2026-16878, CVE-2026-16861, CVE-2026-17212, CVE-2026-18020, CVE-2026-17649, CVE-2026-16871, CVE-2026-18671, CVE-2026-18680, CVE-2026-17502 7.6, 7.5, 7.4, 7.3 CVSS Base score: 4.3 - 8.6
IBM i is Affected By Multiple SQL Vulnerabilities CVE-2026-16908, CVE-2026-16967 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.5
IBM i is Affected By An Improper Validation Vulnerability CVE-2026-17498 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.4
IBM i is Affected By Improper Validation Vulnerability in Line Printer Daemon CVE-2026-17445 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.2
IBM i is Affected By A Prvilege Escalation Vulnerability CVE-2026-18509 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.2
IBM i is Affected By a Denial of Service in HTTP Server CVE-2026-17272 7.6, 7.5, 7.4, 7.3 CVSS Base score: 8.2
IBM i is Affected By Multiple Vulnerabilities in Digital Certificate Manager CVE-2026-17088, CVE-2026-17075, CVE-2026-17071, CVE-2026-17069, CVE-2026-17045, CVE-2026-17043 7.6, 7.5, 7.4, 7.3 CVSS Base score: 2.7 - 8.1
IBM i is Affected By An Improper Management Vulnerability in HTTP Server CVE-2026-18071 7.6, 7.5, 7.4, 7.3 CVSS Base score: 7.8
IBM i is Affected By Multiple Vulnerabilities in Network Authentication Service CVE-2026-16898, CVE-2026-16896 7.6, 7.5, 7.4, 7.3 CVSS Base score: 7.1 - 7.8
IBM i is Affected By Out-of-Bounds Read Vulnerability CVE-2026-16863 7.6, 7.5, 7.4, 7.3 CVSS Base score: 7.7
IBM i is Affected By SQL Injection Vulnerability in Db2 Mirror CVE-2026-16961 7.6, 7.5, 7.4 CVSS Base score: 7.6
IBM i is Affected By A Denial of Service Vulnerability CVE-2026-16931 7.6, 7.5, 7.4, 7.3 CVSS Base score: 7.5
IBM i is Affected By A Denial of Service Vulnerability DST/SST CVE-2026-16887 7.6 CVSS Base score: 7.5
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM CVE-2026-17216, CVE-2026-17076, CVE-2026-17077, CVE-2026-17074 7.6, 7.5, 7.4, 7.3 CVSS Base score: 3.1 - 5.3
IBM i is Affected By A Denial of Service Vulnerability in DRDA / DDM CVE-2026-17078 7.6, 7.5, 7.4, 7.3 CVSS Base score: 5.3
IBM i is Affected By An Improper Privilege Management Vulnerability in LDAP CVE-2026-17438 7.6, 7.5, 7.4, 7.3 CVSS Base score: 4.4
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
