IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5, and 3.33.1 through 3.33.3 could allow an attacker to bypass authorization by manipulating URL query parameters due to incorrect mapping of values to untrusted query string input.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7286498 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-08 21:17
Updated : 2026-09-09 15:41
NVD link : CVE-2026-19651
Mitre link : CVE-2026-19651
CVE.ORG link : CVE-2026-19651
JSON object : View
Products Affected
No product.
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
