Ibm

Websphere Application Server

492 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 28.07.2026 20:11:58
  • Zuletzt bearbeitet 05.08.2026 19:21:02

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service due to uncontrolled heap allocation.

  • EPSS 0.22%
  • Veröffentlicht 28.07.2026 20:10:16
  • Zuletzt bearbeitet 05.08.2026 19:50:20

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens.

Medienbericht
  • EPSS 0.34%
  • Veröffentlicht 28.07.2026 20:09:11
  • Zuletzt bearbeitet 05.08.2026 19:51:37

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 ND Collective Controller is affected by a path-segment injection vulnerability in the collective routing mechanism.

  • EPSS 0.21%
  • Veröffentlicht 28.07.2026 20:07:37
  • Zuletzt bearbeitet 06.08.2026 22:16:48

IBM WebSphere Application Server and IBM WebSphere Application Server - Liberty is vulnerable to HTTP request smuggling due to improper handling of TRACE requests.

  • EPSS 0.23%
  • Veröffentlicht 28.07.2026 20:04:41
  • Zuletzt bearbeitet 05.08.2026 15:35:45

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP request smuggling.

Medienbericht
  • EPSS 0.32%
  • Veröffentlicht 28.07.2026 19:50:07
  • Zuletzt bearbeitet 03.08.2026 14:55:49

IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication by sending a crafted unauthenticated request.

Medienbericht
  • EPSS 0.26%
  • Veröffentlicht 28.07.2026 19:47:03
  • Zuletzt bearbeitet 03.08.2026 14:52:00

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by a denial of service vulnerability when the restConnector-2.0 feature is enabled.

  • EPSS 0.26%
  • Veröffentlicht 30.06.2026 20:56:04
  • Zuletzt bearbeitet 29.07.2026 19:16:43

IBM CICS Transaction Gateway for Multiplatforms 9.1, 9.2, 9.3, and 10.1 IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are affected by an HTTP request smuggling vulnerability.

  • EPSS 0.17%
  • Veröffentlicht 30.06.2026 20:50:34
  • Zuletzt bearbeitet 02.07.2026 17:57:37

IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative console.

  • EPSS 0.21%
  • Veröffentlicht 30.06.2026 20:17:28
  • Zuletzt bearbeitet 06.08.2026 22:16:44

IBM WebSphere Application Server Liberty is affected by a server-side request forgery vulnerability with the apiDiscovery-1.0 feature enabled.