HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-15064 — IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Serv...

·Source: NIST NVD

Updated:

Executive Summary

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens.

Analysis

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens. CVSS Score: 8.7. Published: 2026-07-28T21:17:27.493.

Indicators of Compromise (3)

CVE (1)
CVE-2026-15064
Source Attribution

Originally published by NIST NVD on Jul 28, 2026. Verified by: NIST.

Related Threats