CPE
Integer Overflow Vulnerability in IBM MQ Request Processing (CVE-2026-11725)
1 CVEAn integer overflow vulnerability in IBM MQ's processing of MQINQ requests allows an authenticated attacker to trigger a denial of service or potentially execute arbitrary code.
IBM MQ Improper Validation Vulnerability (CVE-2026-11381)
1 CVEIBM MQ contains a vulnerability in the validation of message distribution list structures that allows an authenticated attacker to trigger a denial of service or potentially execute arbitrary code.
Stack Buffer Overflow in IBM MQ XA Transaction Processing
1 CVEIBM MQ is vulnerable to a stack buffer overflow triggered by malicious XA transaction identifiers, allowing an authenticated attacker to cause a denial of service or achieve arbitrary code execution.
Vulnerability in IBM MQ Cluster Command Message Validation
1 CVEIBM MQ contains a vulnerability (CVE-2026-10853) where improper cluster command message length validation allows authenticated attackers to cause a denial of service or remote code execution.
IBM MQ Java and JMS Client Deserialization Vulnerability
1 TTP 1 CVEAn authenticated attacker can execute arbitrary code on client applications by exploiting a deserialization filter bypass in IBM MQ Java and JMS client libraries.
Buffer Overflow Vulnerability in IBM MQ
2 TTPs 1 CVEIBM MQ is vulnerable to a buffer overflow during the processing of malformed compressed data, which can be leveraged by a remote attacker for denial of service or arbitrary code execution.
XML External Entity Injection in IBM MQ Classes for Java
1 TTP 1 CVEAn XML external entity injection vulnerability (CVE-2026-12666) in IBM MQ Classes for Java allows authenticated attackers to perform denial-of-service attacks or disclose sensitive host information by manipulating MQRFH2 headers.
IBM MQ XML External Entity Injection Vulnerability
1 TTP 1 CVEAn XML external entity injection vulnerability in IBM MQ allows authenticated attackers to perform arbitrary file reads or server-side request forgery during reply message processing.