HIGHVulnerability
Verified
Global
NVD HIGH: CVE-2026-15064 — IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Serv...
·Source: NIST NVD
Updated:
Executive Summary
IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens.
Analysis
IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens. CVSS Score: 8.7. Published: 2026-07-28T21:17:27.493.