CVE-2026-16860Disclosure(ibm / i)

LOWCVSS 9.9 · CRITICAL

Exploit discussion active in current signal (4 latest mentions)

Immediate actions

  • Patch ibm i systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element.

2.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-427

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • i

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 4 total mentions across 1 day

Affected systems

Vendors
Products
i

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-08-13: 4PoC Mentioned / Linked · 2026-08-13: 1Patch / Workaround · 2026-08-13: 1Technical Details · 2026-08-13: 308-13
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Patch
125.0%
Referenced assets3 URLs
Full discourse4 posts
  • ExploitGrid@exploitgrid
    Disclosure

    [CVE] CVE-2026-16860 [HIGH PRIORITY] #IBM i is Affected By Remote Code Execution Vulnerability [] 🔗 https://exploitgrid.net/cve/CVE-2026-16860

    Post summary

    The tweet announces a high‑priority RCE vulnerability (CVE‑2026‑16860) affecting IBM i and provides a link to ExploitGrid for further details.

    1000028
    30 followersView on X
  • ExploitGrid@exploitgrid
    General

    🛡️ #ExploitGrid Daily #Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2024-27253 CVE-2026-67282 CVE-2026-73299 CVE-2026-16860 CVE-2026-19656 ..🧵👇

    Post summary

    The content lists several CVE identifiers without providing additional details or context.

    1000043
    30 followersView on X
  • ThreatAft@ThreatAft
    Patch

    🚨 IBM i Mass Patch Day — 9 CVEs, CVSS 9.9 PEAK CVE-2026-16860 (9.9): Uncontrolled search path RCE CVE-2026-17083 (9.8): Debug Server RCE (unauthenticated) → http://threataft.com/articles/ibm-i-mass-patch-day-august-2026-9-cves #cybersecurity #infosec #IBMi #AS400 #PatchTuesday #ERPy #ThreatIntel

    Post summary

    An IBM i Mass Patch Day article outlines nine high‑severity CVEs with CVSS scores up to 9.9, implying imminent patch availability.

    0000078
    36 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-16860 IBM i RCE Vulnerability Due to Uncontrolled Search Path Element https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-16860

    Post summary

    The text announces a new IBM i RCE vulnerability (CVE-2026-16860) caused by an uncontrolled search path element, without additional details on PoC, exploitation, or patches.

    00000136
    4.1K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appibmi---

Explore more