CVE-2026-84272

IBM Guardium Data Protection

Published 8 Oct 2026 · updated 8 Oct 2026 · Awaiting Analysis

9.8 Critical · CVSS 3.1, us.ibm.com

Description

IBM Guardium Data Protection 12.1 and 12.2.2 are vulnerable to missing authentication in the edge-controller component. An unauthenticated remote attacker could exploit this vulnerability to execute arbitrary container images and gain control of managed edge clusters.

References