IBM security advisory (AV26-943)
Canada's Cyber Centre urges updates for vulnerabilities in multiple IBM products, including WebSphere, MQ, and IBM i.
The Canadian Centre for Cyber Security published advisory AV26-943 on September 21, 2026, pointing to IBM vulnerabilities current as of September 18. Affected products include CICS TX Advanced 10.1, Guardium Data Protection 12.2, multiple IBM MQ versions, Sterling File Gateway through specified 6.2 builds, WebSphere Application Server 8.5 and 9.0, and IBM i 7.3 through 7.6. IBM Platform RTM 10.2.0.15 and 10.2.0.16 and Spectrum LSF are also listed. The centre urges administrators to review IBM's links and apply updates; no CVE IDs or exploitation are stated.
- Advisory AV26-943 covers multiple IBM products as of September 18, 2026.
- Affected lines include WebSphere, IBM MQ, IBM i, Guardium, and Sterling File Gateway.
- The notice lists affected version ranges but names no CVE identifiers.
- Canada's Cyber Centre urges administrators to review IBM guidance and patch.
Full article106 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-943
Date: September 21, 2026
As of September 18, 2026, IBM is affected by vulnerabilities in the following products:
- CICS TX Advanced
- Version 10.1
- Guardium Data Protection
- Version 12.2
- IBM MQ
- Multiple versions
- IBM MQ for HPE NonStop
- Versions 8.1.0 to 8.1.0.40
- Sterling File Gateway
- Prior to or equal to 6.2.0.6_1, 6.2.1.0 to 6.2.1.2 and 6.2.2.0 to 6.2.2.1
- WebSphere Application Server
- Versions 8.5 and 9.0
- IBM i
- Versions 7.3, 7.4, 7.5 and 7.6
- spectrum-lsf IBM Platform RTM
- Versions 10.2.0.15 and 10.2.0.16
The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-943