Unrated severityNVD Advisory· Published Jul 17, 2026· Updated Jul 28, 2026
IBM Engineering Lifecycle Management - Jazz Foundation is vulnerable to XML Entity Expansion attack
CVE-2026-14979
Description
IBM Engineering Lifecycle Management 7.0.3 ( Interim Fix 001 through ) Interim Fix 021, 7.1.0 ( Interim Fix 001 through ) Interim Fix 009, and 7.2.0 and 7.2.0 Interim Fix 001 DOORS could allow a remote attacker to cause a denial of service due to improper handling of XML entity expansion.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 7.0.3 IF001-IF021, 7.1.0 IF001-IF009, 7.2.0, 7.2.0 IF001
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7279963mitrevendor-advisorypatch
News mentions
0No linked articles in our index yet.