Security Advisory

CVE-2026-8858

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-22 14:16:39
Last updated 2026-07-09 19:54:33
Assigner ibm
CVSS score 7.5
State PUBLISHED

Description

IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code execution and denial of service in the WebSphere Web Server Plug-in component. This vulnerability can be exploited when an attacker impersonates the application server and sends crafted responses to the plug-in.