CVE-2026-19651

IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5, and 3.33.1 through 3.33.3 could allow an attacker to bypass authorization by manipulating URL query parameters due to incorrect mapping of values to untrusted query string input.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-08 21:17

Updated : 2026-09-09 15:41


NVD link : CVE-2026-19651

Mitre link : CVE-2026-19651

CVE.ORG link : CVE-2026-19651


JSON object : View

Products Affected

No product.

CWE
CWE-639

Authorization Bypass Through User-Controlled Key