PT-2026-29656 · Ibm · Ibm Content Navigator

Published

2026-04-02

·

Updated

2026-04-02

·

CVE-2026-1243

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Content Navigator versions 3.0.15, 3.1.0, and 3.2.0
Description IBM Content Navigator is susceptible to a cross-site scripting issue. An authenticated user can inject arbitrary JavaScript code into the Web UI, potentially modifying the intended functionality and leading to credentials disclosure within a trusted session.
Recommendations Update IBM Content Navigator to a version not affected by this issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-1243

Affected Products

Ibm Content Navigator