CVE-2026-18847
8.8IBM · i
IBM i 7.3 through 7.6 contains an origin validation error that could allow an attacker to bypass security controls via a malicious request.
Executive summary
An origin validation error in IBM i versions 7.3 through 7.6 could allow an attacker to bypass security mechanisms, leading to unauthorized actions.
Vulnerability
This vulnerability is an origin validation error (CWE-346) that fails to correctly verify the source of requests. The vulnerability is network accessible and requires user interaction to facilitate the attack, but it does not require prior authentication by the attacker.
Business impact
The CVSS score of 8.8 highlights the severity of this issue, as it permits unauthorized access and potential manipulation of system functions. By exploiting this validation error, an attacker could perform actions on behalf of a legitimate user, leading to significant data loss or unauthorized configuration changes.
Remediation
Immediate Action: Apply the relevant PTF patches provided by IBM to remediate the validation flaw: SJ10887 for 7.6, SJ10888 for 7.5, SJ10890 for 7.4, and SJ10891 for 7.3.
Proactive Monitoring: Monitor network traffic and application logs for suspicious requests that originate from unexpected sources or contain malformed origin headers.
Compensating Controls: Educate users on the risks of clicking suspicious links and utilize browser based security policies to mitigate the impact of cross site request related attacks.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Addressing this origin validation vulnerability is essential to protecting system integrity. Administrators should apply the vendor patches immediately to prevent unauthorized actors from leveraging this flaw to bypass security controls.