← Back to browse · API

CVE-2026-15325

Severity
HIGH
CVSS
8.7
Published
2026-07-28
Modified
2026-08-05
First seen
2026-08-05
Aliases
-
Products
ibm:websphere_application_server
Sources
nvd CVE-2026-15325

Description

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP request smuggling due to improper handling of TRACE requests.

References