CVE-2026-14501: Use of Potentially Dangerous Functionthat in IBM Db2 Genius Hub
IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM Agentics 1.0 could allow an attacker to execute arbitrary code or obtain sensitive information due to the use of dangerous functions without sufficient restrictions.
Other sources
IBM Db2 Genius Hub could allow an attacker to execute arbitrary code or obtain sensitive information due to the use of dangerous functions without sufficient restrictions.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Db2 Genius Hub & Agenticsto a version that resolves this vulnerability.Fixed in 1.1.3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14501?
CVE-2026-14501 has a medium severity rating of 4.3.
How does CVE-2026-14501 affect IBM Db2 Genius Hub?
CVE-2026-14501 can allow an attacker to execute arbitrary code or obtain sensitive information due to the use of potentially dangerous functions.
What versions of IBM Db2 Genius Hub are affected by CVE-2026-14501?
CVE-2026-14501 affects IBM Db2 Genius Hub versions 1.1, 1.1.1, and 1.1.2.
What is the risk level of CVE-2026-14501?
CVE-2026-14501 has a risk level of 22.
How can I mitigate the risks associated with CVE-2026-14501?
To mitigate CVE-2026-14501, it is recommended to update to the latest version of the affected software to ensure safe function usage.