CVE-2026-8059: Multiple Vulnerabilities in IBM Datacap
IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Datacap 9.1.7/9.1.8/9.1.9to a version that resolves this vulnerability.Fixed in 9.1.9Patch IBM Datacap 9.1.9 Interim Fix 008 - Upgrade
Upgrade
IBM Datacap Navigator 9.1.7/9.1.8/9.1.9to a version that resolves this vulnerability.Fixed in 9.1.9Patch IBM Datacap 9.1.9 Interim Fix 008
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8059?
CVE-2026-8059 has a medium severity score of 6.1.
What types of vulnerabilities are associated with CVE-2026-8059?
CVE-2026-8059 is associated with cross-site scripting vulnerabilities.
How do I fix CVE-2026-8059?
To fix CVE-2026-8059, apply the latest security patches for IBM Datacap and IBM Datacap Navigator.
Which versions are affected by CVE-2026-8059?
CVE-2026-8059 affects IBM Datacap 9.1.7, 9.1.8, 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, 9.1.9.
What can an attacker achieve by exploiting CVE-2026-8059?
An attacker exploiting CVE-2026-8059 can embed arbitrary JavaScript in the Web UI, potentially altering its intended functionality.