ibm financial-transaction-manager-ftmfor-redhat-openshift CVE-2026-18184 is a vulnerability in IBM Financial Transaction Manager Ftmfor Redhat Openshift
Published on September 23, 2026

IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities
IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive information due to an XML external entity (XXE) injection flaw.

Vendor Advisory NVD

Vulnerability Analysis

Attack Vector:
ADJACENT_NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
CHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
NONE
Availability Impact:
NONE

Weakness Type

What is a XXE Vulnerability?

The software processes an XML document that can contain XML entities with URIs that resolve to documents outside of the intended sphere of control, causing the product to embed incorrect documents into its output.

CVE-2026-18184 has been classified to as a XXE vulnerability or weakness.


Products Associated with CVE-2026-18184

Want to know whenever a new CVE is published for IBM Financial Transaction Manager Ftmfor Redhat Openshift? stack.watch will email you.

 

Affected Versions

IBM Financial Transaction Manager (FTM) for RedHat OpenShift: