SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16338

CRITICAL · CVSS 9.9 EPSS 0.61%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM DataStage on Cloud Pak for Data 5.4.0.0 is vulnerable to a critical flaw that permits remote authenticated attackers to perform arbitrary file writes due to inadequate validation of file paths. This vulnerability could lead to unauthorized access and manipulation of sensitive files, posing a significant risk to data integrity and confidentiality. Organizations utilizing this version of IBM DataStage should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-16338
Severity
CRITICAL
CVSS
9.9
EPSS
0.61%

Original NVD Description

IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage could allow a remote authenticated attacker to perform an arbitrary file write due to improper validation of file paths.