Vulnerability Bulletins

CVE-2026-14893

   
Affected software IBM
 
IBM Observability with Instana (Agent) Build 1.0.303 through 1.0.320 IBM Instana Node.js tracer component @instana/core version 6.2.1 is vulnerable to prototype pollution through its configuration normalization API.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-14893