CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-14529 — IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Serv...

·Source: NIST NVD

Updated:

Executive Summary

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 traditional is vulnerable to server-side request forgery (SSRF) when the SIP container feature (sipServlet-1.1) is enabled.

Analysis

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 traditional is vulnerable to server-side request forgery (SSRF) when the SIP container feature (sipServlet-1.1) is enabled. CVSS Score: 9.4. Published: 2026-07-29T19:16:44.720.

Indicators of Compromise (3)

CVE (1)
CVE-2026-14529
Source Attribution

Originally published by NIST NVD on Jul 29, 2026. Verified by: NIST.

Related Threats