Vulnerability Bulletins

CVE-2026-18097

   
Affected software IBM
 
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to obtain sensitive information due to the logging of plain text passwords in trace files.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-18097