Description
IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentication unsafe deserialization which could allow a remote attacker to bypass authentication or execute arbitrary code.
CVSS 9.8EPSS 0.523%Risk 1.03
View source- Published
- 2026-07-28 21:17:25
- Affected versions
- >=8.5,<9.1
- Type
- Web application
- Last modified
- 2026-08-05 16:24:19
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H