IBM Product Security Update Advisory (CVE-2026-4870)
A security update has been released to address a vulnerability in an IBM product. The affected product is the Qiskit SDK, and the vulnerable versions are listed as 0.43.0 through 2.5.0. The vulnerability addressed is CVE-2026-4870. This vulnerability is a denial-of-service (DoS) vulnerability in the Qiskit SDK. According to the
IBM Product Security Update Advisory (CVE-2025-2000)
Overview We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version. Affected Products CVE-2025-2000 Qiskit SDK versions: 0.18.0 through 1.4.1 (inclusive) Resolved Vulnerabilities Arbitrary code execution vulnerability when using specially crafted QPY

