Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

WebSphere Application Server - Liberty — Vulnerabilities & Security Advisories 16

All 16 CVE vulnerabilities found in WebSphere Application Server - Liberty, with AI-generated Chinese analysis, references, and POCs.

This page catalogs known Common Weakness Enumerations associated with IBM WebSphere Application Server Liberty, a lightweight Java application server runtime. The vulnerability aggregation collects data on software flaws, security misconfigurations, and implementation errors that impact the confidentiality, integrity, or availability of the application server environment. This resource aggregates findings covering a wide historical range, capturing initial disclosures from early releases through recent updates to provide a comprehensive timeline of security issues affecting this specific product. Users can leverage this information to track vendor advisories from IBM, allowing them to correlate public reports with internal patch cycles and deployment timelines. Additionally, the page facilitates a deeper understanding of specific weakness classes by showing how general vulnerability patterns manifest within the Liberty architecture, helping security teams identify common attack vectors. It also enables users to look up a product’s vulnerability history, offering insights into the stability and security posture of the software over time. By centralizing these details, the page serves as a reference for security analysts, system administrators, and compliance officers who need to assess risk, prioritize remediation efforts, and maintain an accurate inventory of known defects. The structured presentation aids in rapid decision-making during incident response or routine security audits, ensuring that relevant technical details are accessible without the need to search through disparate sources. This consolidated view supports a more efficient approach to managing software security across enterprise deployments.

Vendor: IBM

CVE IDTitleCVSSSeverityPublished
CVE-2026-11897 IBM WebSphere Application Server Liberty is affected by a denial of service vulnerability with HTTP/2 CWE-770 7.5 High2026-07-30
CVE-2026-14980 IBM WebSphere Application Server Liberty is affected by a cross-site request forgery CWE-269 8.3 High2026-07-30
CVE-2026-2482 IBM WebSphere Application Server Liberty is affected by a cross-site request forgery CWE-352 3.1 Low2026-07-29
CVE-2026-14976 IBM WebSphere Application Server Liberty is affected by a remote code execution and path-segment injection vulnerability CWE-306 7.1 High2026-07-28
CVE-2026-15057 IBM WebSphere Application Server Liberty is affected by a denial of service vulnerability CWE-787 7.5 High2026-07-28
CVE-2026-15280 IBM WebSphere Application Server Liberty is affected by a remote code execution and path-segment injection vulnerability CWE-22 7.5 High2026-07-28
CVE-2026-16192 IBM WebSphere Application Server Liberty is affected by a denial of service CWE-674 7.1 High2026-07-28
CVE-2026-11546 IBM WebSphere Application Server Liberty is affected by a server-side request forgery vulnerability CWE-918 7.1 High2026-06-30
CVE-2026-11714 IBM WebSphere Application Server Liberty is affected by an authorization bypass vulnerability CWE-918 8.5 High2026-06-30
CVE-2026-11806 IBM WebSphere Application Server Liberty is affected by a an arbitrary file read vulnerability CWE-444 7.2 High2026-06-30
CVE-2026-5516 IBM WebSphere Application Server Liberty is affected by a security bypass vulnerability 4.4 Medium2026-05-27
CVE-2026-4410 IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a denial of service 4.8 Medium2026-05-27
CVE-2026-3621 IBM WebSphere Application Server Liberty is affected by identity spoofing CWE-269 7.5 High2026-04-22
CVE-2025-14917 IBM WebSphere Application Server Liberty could provide weaker than expected security CWE-1393 6.7 Medium2026-03-25
CVE-2025-14915 IBM WebSphere Application Server Liberty is affected by a privilege escalation vulnerability CWE-200 6.5 Medium2026-03-25
CVE-2025-14923 IBM WebSphere Application Server Liberty could provide weaker than expected security CWE-321 4.7 Medium2026-03-03

All 16 known CVE vulnerabilities affecting WebSphere Application Server - Liberty with full Chinese analysis, references, and POCs where available.