Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

WebSphere Application Server Liberty — Vulnerabilities & Security Advisories 22

All 22 CVE vulnerabilities found in WebSphere Application Server Liberty, with AI-generated Chinese analysis, references, and POCs.

This page documents vulnerability aggregations for the WebSphere Application Server Liberty product, specifically focusing on weaknesses categorized under IBM’s vendor ecosystem. It serves as a centralized reference point for security professionals and system administrators seeking to understand the threat landscape associated with this specific enterprise application server deployment. The content collected here encompasses a comprehensive range of security flaws, including buffer overflows, cross-site scripting, privilege escalation risks, and input validation errors that have been identified in Liberty software components. The data spans a time range from the initial public disclosures of critical security patches through the most recent advisory updates, ensuring a historical perspective on how these vulnerabilities have evolved and been addressed over time. By utilizing this resource, users can effectively track vendor advisories issued by IBM regarding Liberty-specific fixes, gain a deeper understanding of the underlying weakness classes that impact the platform, and investigate the detailed vulnerability history of specific releases to assess their current exposure. This structured approach allows organizations to correlate internal inventory data with external threat intelligence, facilitating more informed decision-making regarding patch management and risk mitigation strategies. The aggregation aims to provide clarity amid the noise of numerous security bulletins by presenting a unified view of known issues, helping stakeholders prioritize remediation efforts based on severity and availability of fixes.

Vendor: IBM

CVE IDTitleCVSSSeverityPublished
CVE-2026-1561 IBM WebSphere Application Server Liberty Server-Side Request Forgery CWE-918 5.4 Medium2026-03-25
CVE-2025-14914 IBM WebSphere Application Server Liberty Path Traversal CWE-22 7.6 High2026-02-02
CVE-2025-36047 IBM WebSphere Application Server Liberty denial of service CWE-770 5.3 Medium2025-08-14
CVE-2025-36000 IBM WebSphere Application Server Liberty cross-site scripting CWE-79 4.4 Medium2025-08-12
CVE-2025-36124 IBM WebSphere Application Server Liberty bypass security CWE-268 5.9 Medium2025-08-12
CVE-2024-27268 IBM WebSphere Application Server Liberty denial of service CWE-770 5.9 Medium2024-04-04
CVE-2024-22353 IBM WebSphere Application Server Liberty denial of service CWE-770 5.9 Medium2024-03-31
CVE-2024-27270 IBM WebSphere Application Server Liberty cross-site scripting CWE-79 4.7 Medium2024-03-27
CVE-2023-50312 IBM WebSphere Application Server Liberty information disclosure CWE-327 5.3 Medium2024-03-01
CVE-2023-46158 IBM WebSphere Application Server session fixation CWE-613 4.9 Medium2023-10-25
CVE-2023-38737 IBM WebSphere Application Server Liberty denial of service CWE-20 5.9 Medium2023-08-16
CVE-2022-22476 IBM WebSphere Application Server Liberty 安全漏洞 8.1 -2022-07-08
CVE-2022-22475 IBM WebSphere Application Server Liberty 输入验证错误漏洞 8.1 -2022-05-17
CVE-2022-22393 IBM WebSphere Application Server Liberty 安全漏洞 6.5 -2022-05-13
CVE-2021-39038 IBM WebSphere Application Server安全漏洞 5.4 -2022-02-24
CVE-2021-39031 IBM WebSphere Application Server 注入漏洞 8.8 -2022-01-25
CVE-2022-22310 IBM WebSphere Application Server Liberty 加密问题漏洞 8.6 -2022-01-19
CVE-2020-4590 IBM WebSphere Application Server Liberty 安全漏洞 6.5 -2020-09-21
CVE-2020-4421 IBM WebSphere Application Server Liberty 授权问题漏洞 4.3 -2020-05-06
CVE-2020-4329 IBM WebSphere Application Server 和IBM WebSphere Application Server Liberty 信息泄露漏洞 4.3 -2020-04-28
CVE-2020-4304 IBM WebSphere Application Server Liberty 跨站脚本漏洞 6.1 -2020-04-02
CVE-2020-4303 IBM WebSphere Application Server Liberty 跨站脚本漏洞 6.1 -2020-04-02

All 22 known CVE vulnerabilities affecting WebSphere Application Server Liberty with full Chinese analysis, references, and POCs where available.