{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/tags/cve-2026-16674/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-16674"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["i"],"_cs_severities":["high"],"_cs_tags":["ibm-i","cve-2026-16674","arbitrary-code-execution","untrusted-search-path"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM has disclosed a security vulnerability identified as CVE-2026-16674, affecting IBM i operating system versions 7.3, 7.4, 7.5, and 7.6. The flaw is rooted in an untrusted search path mechanism (CWE-426), which may permit an attacker with authenticated remote access to execute arbitrary code with elevated privileges.\u003c/p\u003e\n\u003cp\u003eBy manipulating the search path, an attacker can influence the system to load malicious binaries or libraries instead of expected legitimate resources. Because this vulnerability is triggered during the execution of system functions, it poses a significant risk to the integrity and confidentiality of the affected IBM i environments. Defenders should prioritize patching, as this vulnerability carries a CVSS 3.1 base score of 8.8, indicating high severity and potential for significant impact if exploited.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows a remote authenticated attacker to execute arbitrary code on the target IBM i system. This could lead to full system compromise, data exfiltration, or unauthorized administrative control over the affected infrastructure. The vulnerability affects critical versions of the IBM i platform, impacting enterprises that rely on these systems for core business operations.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eApply the relevant security patches provided by IBM for the IBM i operating system immediately.\u003c/li\u003e\n\u003cli\u003eReview the official IBM support advisory for CVE-2026-16674 to verify the specific PTF (Program Temporary Fix) levels required for your version of IBM i.\u003c/li\u003e\n\u003cli\u003eAudit system configurations to ensure search path environments are strictly controlled and restricted to authorized, read-only directories where possible to mitigate similar CWE-426 vectors.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-13T22:05:29Z","date_published":"2026-08-13T22:05:29Z","id":"https://feed.craftedsignal.io/briefs/2026-08-ibm-i-untrusted-search-path/","summary":"An untrusted search path vulnerability (CVE-2026-16674) in IBM i versions 7.3 through 7.6 allows a remote authenticated attacker to achieve arbitrary code execution.","title":"Arbitrary Code Execution in IBM i via Untrusted Search Path","url":"https://feed.craftedsignal.io/briefs/2026-08-ibm-i-untrusted-search-path/"}],"language":"en","title":"CraftedSignal Threat Feed - Cve-2026-16674","version":"https://jsonfeed.org/version/1.1"}