← Back to browse · API

CVE-2026-15064

Severity
HIGH
CVSS
8.7
Published
2026-07-28
Modified
2026-08-05
First seen
2026-08-05
Aliases
-
Products
ibm:websphere_application_server
Sources
nvd CVE-2026-15064

Description

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens.

References