Product
high
advisory
IBM WebSphere Application Server Unsafe Deserialization Vulnerability
2 TTPs 1 CVEA critical unsafe deserialization vulnerability, CVE-2026-14974, in IBM WebSphere Application Server versions 8.5 and 9.0 traditional, allows a remote attacker to execute arbitrary code by processing specially crafted untrusted data, potentially leading to full system compromise.
WebSphere Application Server 8.5 +1
vulnerability
deserialization
rce
websphere
cve
2t
1c
critical
advisory
IBM WebSphere Application Server Authentication Bypass Vulnerability (CVE-2026-16184)
5 TTPs 7 CVEs 5 IOCsA remote attacker can bypass authentication in IBM WebSphere Application Server versions 9.0 and 8.5 by sending a crafted unauthenticated request, potentially leading to unauthorized access and impact on confidentiality, integrity, and availability.
WebSphere Application Server 9.0 +8
vulnerability
authentication-bypass
websphere
broken-access-control
privilege-escalation
deserialization
RCE
server-side-request-forgery
+6
5t
7c
5i