CVE-2026-14971: This PowerVM Novalink update is being released to address
IBM NovaLink APIs misconfiguration may increase attack surface and enable unintended or unauthorized operations under non-default conditions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM PowerVM Novalinkto a version that resolves this vulnerability.Fixed in 2.2.1.1 - Upgrade
Upgrade
IBM PowerVM Novalinkto a version that resolves this vulnerability.Fixed in 2.3.3