IBM disclosed CVE-2026-13361, a high-severity remote code execution flaw in the SQL Interface Handler of IBM Informix Dynamic Server. The vulnerability stems from an unchecked SQL Interface length field in oninit sq_sgkprepare, allowing an authenticated SQL Interface client to trigger a stack-based buffer overflow with a specially crafted request. IBM rated the issue CVSS 8.8 and said affected releases include Informix Dynamic Server 12.10.x, 14.10, and 15.0.
The weakness aligns with CWE-121, in which data written past a stack buffer can corrupt control-flow data and lead to crashes or arbitrary code execution. IBM said the flaw is fixed in Informix 14.10.xC13W13 and 15.0.1.14, and noted that no workarounds or mitigations are available, making vendor patching the primary remediation path for exposed deployments.

See real exploitation activity before you spend the cycle.
1 event from the most recent confirmed update back to the earliest known activity.
IBM disclosed CVE-2026-13361, a remote code execution vulnerability in the SQL Interface component of IBM Informix Dynamic Server caused by an unchecked length field leading to a stack-based buffer overflow. IBM said affected versions include 12.10.x, 14.10, and 15.0, and that fixes are available in 14.10.xC13W13 and 15.0.1.14 with no workarounds or mitigations.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.