Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

WebSphere Application Server — Vulnerabilities & Security Advisories 175

All 175 CVE vulnerabilities found in WebSphere Application Server, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities affecting IBM WebSphere Application Server, organized by weakness type. It collects known flaws in the product across a defined historical time range, focusing on recurring vulnerability classes rather than individual incident details. Here, you can track the vendor’s security advisories, examine how a specific weakness class manifests in the product, and review the full vulnerability history to understand long-term exposure trends.

Vendor: IBM Corporation

CVE ID Title CVSS Severity Published
CVE-2026-11711 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-502 6.5 Medium 2026-09-18
CVE-2026-11710 IBM WebSphere Application Server is affected by an HTTP request smuggling vulnerability CWE-444 6.5 Medium 2026-09-18
CVE-2026-11545 IBM WebSphere Application Server is affected by a privilege escalation CWE-862 3.7 Low 2026-09-18
CVE-2026-11540 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-863 5.3 Medium 2026-09-18
CVE-2026-11539 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-306 5.3 Medium 2026-09-18
CVE-2026-11538 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-117 3.7 Low 2026-09-18
CVE-2026-11537 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-650 4.3 Medium 2026-09-18
CVE-2026-15396 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-444 6.5 Medium 2026-09-14
CVE-2026-15412 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-601 6.5 Medium 2026-09-14
CVE-2026-15634 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-444 6.5 Medium 2026-09-14
CVE-2026-15887 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-918 5.4 Medium 2026-09-14
CVE-2026-16186 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-79 5.4 Medium 2026-09-14
CVE-2026-16185 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-862 6.4 Medium 2026-09-14
CVE-2026-16187 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-862 6.5 Medium 2026-09-14
CVE-2026-16188 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-117 5.3 Medium 2026-09-14
CVE-2026-16190 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-862 3.1 Low 2026-09-14
CVE-2026-16189 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-117 4.8 Medium 2026-09-14
CVE-2026-16435 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-650 5.9 Medium 2026-09-14
CVE-2026-9667 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-918 5.3 Medium 2026-09-10
CVE-2026-9176 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-94 6.7 Medium 2026-09-10
CVE-2026-9327 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-269 6.3 Medium 2026-09-10
CVE-2026-9336 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-306 6.5 Medium 2026-09-10
CVE-2026-9338 IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities CWE-400 5.3 Medium 2026-09-10
CVE-2026-8400 Multiple Vulnerabilities in IBM® Java SDK affect IBM WebSphere Application Server and WebSphere Application Server Liberty due to the July 2026 CPU CWE-470 8.1 High 2026-08-05
CVE-2026-11536 IBM WebSphere Application Server is affected by a remote code execution vulnerability CWE-502 8.5 High 2026-07-30
CVE-2026-9322 IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities CWE-400 7.5 High 2026-07-30
CVE-2026-10842 IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a security bypass vulnerability CWE-289 7.5 High 2026-07-30
CVE-2026-14529 IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a server-side request forgery CWE-306 9.4 Critical 2026-07-29
CVE-2026-14446 IBM WebSphere Application Server is affected by a privilege escalation CWE-306 9.8 Critical 2026-07-28
CVE-2026-14515 IBM WebSphere Application Server is affected by cross-site scripting and deserialization vulnerabilities CWE-79 6.1 Medium 2026-07-28

All 175 known CVE vulnerabilities affecting WebSphere Application Server with full Chinese analysis, references, and POCs where available.