CVE-2026-81656

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor. A low-privileged authenticated user can inject SQL statements through the newQueryBuilder REST endpoint, potentially resulting in unauthorized access to data and impact to the confidentiality, integrity, and availability of the affected system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-10-03: 110-03
Full discourse1 post
  • DFIR Lab@DFIR_Lab

    🚨 HIGH severity SQL injection in IBM Guardium Data Protection 12.2 (CVE-2026-81656). CVSS 8.8. Low-privileged users can inject SQL via newQueryBuilder REST endpoint, risking data breach & system compromise. Patch immediately. #CVE #Vulnerability #PatchNow https://t.co/jd0MgiqsBj

    0000032
    142 followersView on X

Explore more