← All CVEs

CVE-2026-6928

critical · 9.8

IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been freed. This allows an attacker who can influence program execution or input may exploit this condition to corrupt memory, cause application crashes, or execute arbitrary code.

9.8
CVSS
EPSS (exploit prob.)
EPSS percentile
2026-09-23
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-416

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2026-6928