CVE-2026-13297CWE-1336

CVE-2026-13297

published September 4, 2026

CVSS
EPSS
0%
Percentile
4.7
In the wild
Unconfirmed
What it is

IBM Verify Identity Access Advanced Access Control may be vulnerable to an information disclosure attack.

The record
Technical detail
CVSS
Not scored
CVSS v4.0
Not supplied
EPSS
0.00152 · 4.7th percentile
Weakness
CWE-1336 · Improper Neutralization of Special Elements Used in a Template Engine
Published
2026-09-04T21:16Z
References (1)
EPSS history
Timeline
  • 06 SEP 03:29Z
    EPSS moved — → 0%
    epss
  • 04 SEP 16:46Z
    Security vulnerabilities have been addressed in IBM Verify Identity Access and IBM Security Verify Access
    cvelistv5