Description
IBM MQ Agent CD: v1.0.0, v1.0.1, v2.0.0, v2.0.1 An authenticated user with a valid session cookie can submit arbitrarily large or computationallyexpensive requests that cause the LLM agent workers to be held for extended periods — rangingfrom tens of seconds to over ten minutes per request. When multiple such requests are sentconcurrently, the agent worker pool becomes exhausted, causing all other IBM MQ Console users toexperience degraded performance or complete unavailability of the AI Agent feature.
Published: 2026-09-04
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service via resource exhaustion
Action: Immediate Patch
AI Analysis

Impact

IBM MQ Agent is vulnerable to an authenticated denial of service attack that arises when a user with a valid session cookie submits exceptionally large or computationally expensive requests to the LLM agent workers. These requests consume worker resources for extended periods, from tens of seconds to over ten minutes, causing the worker pool to become saturated. The resulting degradation or complete unavailability of the AI Agent feature can affect all users logged into the IBM MQ Console, potentially disrupting business workflows that rely on the AI agent.

Affected Systems

The vulnerability affects IBM MQ Agent images in versions v1.0.0, v1.0.1, v2.0.0, and v2.0.1. The affected Docker images include ibm-mq-agent-runtime, ibm-mq-agent-mcp, and ibm-mq-agent-embedding-service, all of which are listed under the IBM:MQ Agent CNA vendor.

Risk and Exploitability

The CVSS score of 6.5 classifies the vulnerability as moderate severity. The EPSS score is not available, leaving the exact exploitation probability uncertain, but the fact that the flaw requires only an authenticated session cookie suggests it can be easily leveraged by compromised or privileged accounts. The vulnerability is not currently listed in CISA's KEV catalog, but its denial‑of‑service impact warrants immediate attention. Attackers can exploit the flaw by crafting large or computationally heavy requests within their session, potentially exhausting the worker pool and degrading service for all users.

Generated by OpenCVE AI on September 4, 2026 at 16:39 UTC.

Remediation

Vendor Solution

Issues mentioned by this security bulletin are addressed in IBM MQ Agent v2.0.2 image. IBM strongly recommends applying the latest agent images. IBM MQ Agent v2.0.2 release details: Image Fix Version Registry Image Location ibm-mq-agent-runtime v2.0.2 cp.icr.io cp.icr.io/cp/ibm-mq-agent-runtime:v2.0.2@sha256:564a3ea85fb601b6bcad4edfd1fe681430d3302338566eb9a554b76e88dc5381 ibm-mq-agent-mcp v2.0.2 cp.icr.io cp.icr.io/cp/ibm-mq-agent-mcp:v2.0.2@sha256:400e94ea5312a1307a03e4098506d2e30f7638a0c1410992ce50c59f5cf7a25e ibm-mq-agent-embedding-service v2.0.2 cp.icr.io cp.icr.io/cp/ibm-mq-agent-embedding-service:v2.0.2@sha256:1c324e024462984462a0c7286b7249f76ee1f3bd08000cddf6e431766eea5d7a


OpenCVE Recommended Actions

  • Upgrade all IBM MQ Agent containers to the published v2.0.2 images as recommended by IBM
  • Redeploy the updated images across all environments to ensure every agent instance uses the patched version
  • Implement or enforce request size and computational cost limits on the agent to prevent future worker exhaustion

Generated by OpenCVE AI on September 4, 2026 at 16:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 11 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 04 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Description IBM MQ Agent CD: v1.0.0, v1.0.1, v2.0.0, v2.0.1 An authenticated user with a valid session cookie can submit arbitrarily large or computationallyexpensive requests that cause the LLM agent workers to be held for extended periods — rangingfrom tens of seconds to over ten minutes per request. When multiple such requests are sentconcurrently, the agent worker pool becomes exhausted, causing all other IBM MQ Console users toexperience degraded performance or complete unavailability of the AI Agent feature.
Title Multiple vulnerabilities in IBM MQ Agent images
First Time appeared Ibm
Ibm mq Agent
Weaknesses CWE-400
CPEs cpe:2.3:a:ibm:mq_agent:cd:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm mq Agent
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-10T21:00:35.296Z

Reserved: 2026-08-12T17:12:34.967Z

Link: CVE-2026-19645

cve-icon Vulnrichment

Updated: 2026-09-10T20:57:11.069Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-04T16:17:24.923

Modified: 2026-09-10T21:17:26.623

Link: CVE-2026-19645

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T08:26:08Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption