No advisories yet.
Solution
Download and install IBM Common Licensing 9.1 from Passport Advantage https://www.ibm.com/software/passportadvantage/pao-customer Users are strongly advised to update to the latest version (IBM Common Licensing 9.1) to mitigate any potential risks associated with these vulnerabilities.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7286490 |
|
Fri, 18 Sep 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | |
| Title | Multiple vulnerabilities affect IBM License Key Server Administration and Reporting Tool and IBM LKS Administration Agent | |
| First Time appeared |
Ibm
Ibm common Licensing |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:common_licensing:agent:*:*:*:*:*:*:* cpe:2.3:a:ibm:common_licensing:art:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm common Licensing |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-09-18T17:32:50.910Z
Reserved: 2026-01-16T02:36:27.399Z
Link: CVE-2026-1029
No data.
Status : Awaiting Analysis
Published: 2026-09-18T16:17:06.157
Modified: 2026-09-18T18:17:47.257
Link: CVE-2026-1029
No data.
OpenCVE Enrichment
No data.