CVE-2026-12728

IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow an authenticated attacker to execute arbitrary code due to a deserialization of untrusted data.
Configurations

No configuration.

History

17 Sep 2026, 15:16

Type Values Removed Values Added
CWE CWE-502

Information

Published : 2026-09-15 18:17

Updated : 2026-09-17 15:16


NVD link : CVE-2026-12728

Mitre link : CVE-2026-12728

CVE.ORG link : CVE-2026-12728


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data