CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-11904

mediumCVSS 5.3covered by 1 sourcefirst seen 2026-07-30
IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

⚡ Watch CVE-2026-11904

Get an email if CVE-2026-11904 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-11904

CVE.org record

Embed the live status

CVE-2026-11904 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-11904 status](https://www.csirts.com/badge/CVE-2026-11904)](https://www.csirts.com/cve/CVE-2026-11904)