CVE-2026-14991

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM DataPower Gateway 10.5.0.0 through 10.5.0.22, 10.6.1 through 10.6.6, 10.6.0.0 through 10.6.0.10, and 11.0.0.0 through 11.0.0.2 is vulnerable to a buffer overflow, caused by improper bounds checking. A local user could overflow the buffer and execute arbitrary code on the system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-10-09: 110-09
Referenced assets1 URL
By indicator
Full discourse1 post
  • zoomeyebot@zoomeyebot

    🚨 IBM DataPower Gateway patches 23 flaws, four rated critical Critical Vulnerability Alert! IBM DataPower Gateway is affected by CVE-2026-14991. 🔍 Identify Targets via ZoomEye: Search Dork: http.header="DataPower" Exposure: 237 instances identified globally. ZoomEye Search Link: 👉 https://www.zoomeye.ai/searchResult?q=aHR0cC5oZWFkZXI9IkRhdGFQb3dlciI%3D #Infosec #CyberSecurity #ZoomEye

    0000025
    25 followersView on X

Explore more