{"api_version":"v1","generated_at":"2026-10-07T05:10:00+00:00","product":{"cve_count":171,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-ibm-websphere-application-server-bd02da16db17","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"WebSphere Application Server","next_cursor":"djE6NTA","observations":[{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11711","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11711","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-19T14:11:42.354Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-18T19:08:38.336Z"},{"affected":"WebSphere Application Server: 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11710","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11710","fixed":"IBM strongly recommends addressing the vulnerability now by applying a currently available interim fix or fix pack that contains the fix for APAR PH71679.; For IBM WebSphere Application Server traditional:; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.; Additional interim fixes may be available and linked off the interim fix download page.","last_modified":"2026-09-19T14:11:42.506Z","patch_url":"https://www.ibm.com/support/pages/node/7286731","primary_source":"","published":"2026-09-18T19:08:09.672Z"},{"affected":"WebSphere Application Server: 8.5, 9.0","affected_versions_present":true,"cve_id":"CVE-2026-11545","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11545","fixed":"IBM strongly recommends addressing the vulnerability now by applying a currently available fix pack that contains the fix for APAR DT496500.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 https://www.ibm.com/support/pages/node/7285876 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.; Additional interim fixes may be available and linked off the interim fix download page.","last_modified":"2026-09-19T14:11:42.792Z","patch_url":"https://www.ibm.com/support/pages/node/7286730","primary_source":"","published":"2026-09-18T19:04:20.039Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11540","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11540","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-19T14:11:42.939Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-18T19:04:02.044Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11539","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11539","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-19T14:11:43.108Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-18T19:03:33.371Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11538","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11538","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 (availability September 2026) or later fix pack.","last_modified":"2026-09-18T19:46:49.750Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-18T19:00:11.647Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11537","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11537","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-19T14:11:43.715Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-18T16:10:32.090Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-15396","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15396","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T14:37:29.521Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T20:08:38.336Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-15412","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15412","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T17:31:48.623Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T20:08:05.955Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-15634","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15634","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T17:31:48.776Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T20:01:35.736Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-15887","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15887","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T17:31:48.918Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:58:40.041Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16186","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16186","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T14:45:11.937Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:58:02.623Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16185","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16185","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-14T20:13:30.131Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:57:30.742Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16187","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16187","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-14T20:13:30.315Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:54:23.055Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16188","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16188","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-14T20:13:30.462Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:52:56.206Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16190","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16190","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T18:05:10.132Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:51:47.240Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16189","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16189","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T18:05:16.871Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:51:31.309Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16435","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16435","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-15T18:05:23.419Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-14T19:49:05.663Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-9667","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9667","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-14T15:41:31.385Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-10T20:57:22.096Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-9176","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9176","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-12T03:55:51.649Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-10T20:45:57.913Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-9327","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9327","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-11T17:44:03.635Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-10T20:44:01.647Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-9336","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9336","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-14T15:41:31.825Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-10T18:45:02.163Z"},{"affected":"WebSphere Application Server: 9.0, 8.5","affected_versions_present":true,"cve_id":"CVE-2026-9338","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9338","fixed":"IBM strongly recommends addressing the vulnerabilities now by applying the fix pack(s) listed below.; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Apply Fix Pack 9.0.5.29 SB0030823 (availability September 2026) or later fix pack.; For V8.5.0.0 through 8.5.5.30:; \u00b7 Apply Fix Pack 8.5.5.31 https://www.ibm.com/support/pages/node/7285869 (availability September 2026) or later fix pack.","last_modified":"2026-09-10T19:00:58.116Z","patch_url":"https://www.ibm.com/support/pages/node/7286610","primary_source":"","published":"2026-09-10T18:44:35.465Z"},{"affected":"8.5; 9.0; Continuous delivery","affected_versions_present":true,"cve_id":"CVE-2026-8400","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-8400","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-06T03:55:25.879Z","patch_url":"https://www.suse.com/security/cve/CVE-2026-8400","primary_source":"","published":"2026-08-05T15:58:42.883Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11536","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11536","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-31T03:56:20.116Z","patch_url":"","primary_source":"","published":"2026-07-30T19:02:33.490Z"},{"affected":"9.0; 8.5; 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-9322","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9322","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T18:00:19.093Z","patch_url":"","primary_source":"","published":"2026-07-30T16:13:03.775Z"},{"affected":"8.5; 9.0; 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-10842","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10842","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T17:37:19.123Z","patch_url":"","primary_source":"","published":"2026-07-30T15:57:16.828Z"},{"affected":"9.0; 8.5; 17.0.0.3 \u2264 26.0.0.8","affected_versions_present":true,"cve_id":"CVE-2026-14529","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14529","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T03:55:39.717Z","patch_url":"","primary_source":"","published":"2026-07-29T18:15:18.180Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-14446","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14446","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T03:55:19.397Z","patch_url":"","primary_source":"","published":"2026-07-28T20:52:17.237Z"},{"affected":"8.5; 9.0","affected_versions_present":true,"cve_id":"CVE-2026-14515","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14515","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-29T12:39:03.143Z","patch_url":"","primary_source":"","published":"2026-07-28T20:50:33.785Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-14512","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14512","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T03:55:21.695Z","patch_url":"","primary_source":"","published":"2026-07-28T20:50:08.632Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-14528","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14528","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T03:55:23.956Z","patch_url":"","primary_source":"","published":"2026-07-28T20:37:32.976Z"},{"affected":"8.5; 9.0","affected_versions_present":true,"cve_id":"CVE-2026-14974","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14974","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-30T03:55:27.825Z","patch_url":"","primary_source":"","published":"2026-07-28T20:29:47.119Z"},{"affected":"WebSphere Application Server: 9.0, 8.5; WebSphere Application Server - Liberty: 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-14981","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-14981","fixed":"IBM strongly recommends addressing the vulnerability now by applying a currently available interim fix or fix pack that contains the fix for APAR PH72191 or PH72192. To determine if a feature is enabled for WebSphere Application Server Liberty, refer to How to determine if Liberty is using a specific feature https://www.ibm.com/support/pages/node/6553910 .; For IBM WebSphere Application Server Liberty 17.0.0.3 - 26.0.0.7 using servlet-3.0, servlet-3.1, servlet-4.0, servlet-5.0, servlet-6.0, or servlet-6.1 feature(s):; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72191 https://www.ibm.com/support/pages/node/7277460; --OR--; \u00b7 Apply Fix Pack 26.0.0.8 or later (targeted availability 3Q2026).; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 9.0.5.29 or later (targeted availability 3Q2026).; For V8.5.0.0 through 8.5.5.30:; \u00b7 Upgrade to minimal fix pack levels as required by interim fix and then apply Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 8.5.5.31 or later (targeted availability 3Q2026).","last_modified":"2026-09-23T20:51:29.907Z","patch_url":"https://www.ibm.com/support/pages/node/7281625","primary_source":"","published":"2026-07-28T20:22:37.986Z"},{"affected":"WebSphere Application Server: 9.0, 8.5; WebSphere Application Server - Liberty: 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-15064","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15064","fixed":"IBM strongly recommends addressing the vulnerability now by applying a currently available interim fix or fix pack that contains the fix for APAR PH72191 or PH72192. To determine if a feature is enabled for WebSphere Application Server Liberty, refer to How to determine if Liberty is using a specific feature https://www.ibm.com/support/pages/node/6553910 .; For IBM WebSphere Application Server Liberty 17.0.0.3 - 26.0.0.8 using servlet-3.0, servlet-3.1, servlet-4.0, servlet-5.0, servlet-6.0, or servlet-6.1 feature(s):; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72191 https://www.ibm.com/support/pages/node/7277460; --OR--; \u00b7 Apply Fix Pack 26.0.0.8 or later (targeted availability 3Q2026).; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 9.0.5.29 or later (targeted availability 3Q2026).; For V8.5.0.0 through 8.5.5.30:; \u00b7 Upgrade to minimal fix pack levels as required by interim fix and then apply Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 8.5.5.31 or later (targeted availability 3Q2026).","last_modified":"2026-09-23T20:53:05.098Z","patch_url":"https://www.ibm.com/support/pages/node/7281625","primary_source":"","published":"2026-07-28T20:10:16.529Z"},{"affected":"9.0; 8.5; 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-15325","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15325","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-06T20:24:22.473Z","patch_url":"","primary_source":"","published":"2026-07-28T20:07:37.401Z"},{"affected":"WebSphere Application Server: 9.0, 8.5; WebSphere Application Server - Liberty: 17.0.0.3 \u2264 26.0.0.7","affected_versions_present":true,"cve_id":"CVE-2026-15328","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15328","fixed":"IBM strongly recommends addressing the vulnerability now by applying a currently available interim fix or fix pack that contains the fix for APAR PH72191 or PH72192. To determine if a feature is enabled for WebSphere Application Server Liberty, refer to How to determine if Liberty is using a specific feature https://www.ibm.com/support/pages/node/6553910 .; For IBM WebSphere Application Server Liberty 17.0.0.3 - 26.0.0.7 using servlet-3.0, servlet-3.1, servlet-4.0, servlet-5.0, servlet-6.0, or servlet-6.1 feature(s):; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72191 https://www.ibm.com/support/pages/node/7277460; --OR--; \u00b7 Apply Fix Pack 26.0.0.8 or later (targeted availability 3Q2026).; For IBM WebSphere Application Server traditional:; For V9.0.0.0 through 9.0.5.28:; \u00b7 Upgrade to minimal fix pack levels as required by the interim fix and then apply the Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 9.0.5.29 or later (targeted availability 3Q2026).; For V8.5.0.0 through 8.5.5.30:; \u00b7 Upgrade to minimal fix pack levels as required by interim fix and then apply Interim Fix that resolves PH72192 https://www.ibm.com/support/pages/node/7281143; \u00b7 Apply Fix Pack 8.5.5.31 or later (targeted availability 3Q2026).","last_modified":"2026-09-23T20:50:48.871Z","patch_url":"https://www.ibm.com/support/pages/node/7281625","primary_source":"","published":"2026-07-28T20:04:41.632Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-16184","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16184","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-29T12:38:48.001Z","patch_url":"","primary_source":"","published":"2026-07-28T19:50:07.232Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11594","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11594","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-01T14:29:19.691Z","patch_url":"","primary_source":"","published":"2026-06-30T20:50:34.772Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11595","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11595","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-01T12:55:55.267Z","patch_url":"","primary_source":"","published":"2026-06-30T19:50:22.059Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11708","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11708","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-01T14:01:08.079Z","patch_url":"","primary_source":"","published":"2026-06-30T19:47:31.481Z"},{"affected":"9.0; 8.5","affected_versions_present":true,"cve_id":"CVE-2026-11712","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-11712","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-01T13:24:16.490Z","patch_url":"","primary_source":"","published":"2026-06-30T19:45:37.814Z"},{"affected":"8.5; 9.0","affected_versions_present":true,"cve_id":"CVE-2026-10852","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10852","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-09T19:54:28.890Z","patch_url":"","primary_source":"","published":"2026-06-22T19:32:28.668Z"},{"affected":"9.0.0 \u2264 7.0.2 Interim Fix 035; 8.5.0 \u2264 7.0.3 Interim Fix 017; 17.0.0.3 \u2264 26.0.0.6","affected_versions_present":true,"cve_id":"CVE-2026-9320","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9320","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T16:05:22.609Z","patch_url":"","primary_source":"","published":"2026-06-22T14:53:36.057Z"},{"affected":"9.0.0 \u2264 7.0.2 Interim Fix 035; 8.5.0 \u2264 7.0.3 Interim Fix 017; 17.0.0.3 \u2264 26.0.0.6","affected_versions_present":true,"cve_id":"CVE-2026-9071","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9071","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-23T13:39:22.340Z","patch_url":"","primary_source":"","published":"2026-06-22T14:47:39.502Z"},{"affected":"9.0 \u2264 7.0.2 Interim Fix 035; 8.5.0 \u2264 7.0.3 Interim Fix 017","affected_versions_present":true,"cve_id":"CVE-2026-9006","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9006","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-24T03:56:08.241Z","patch_url":"","primary_source":"","published":"2026-06-22T14:46:47.768Z"},{"affected":"9.0.0 \u2264 7.0.2 Interim Fix 035; 8.5.0 \u2264 7.0.3 Interim Fix 017; 17.0.0.3 \u2264 26.0.0.6","affected_versions_present":true,"cve_id":"CVE-2026-8646","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-8646","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-24T03:56:09.798Z","patch_url":"","primary_source":"","published":"2026-06-22T14:44:42.460Z"},{"affected":"8.5.0 \u2264 7.0.2 Interim Fix 035; 9.0.0 \u2264 7.0.3 Interim Fix 017","affected_versions_present":true,"cve_id":"CVE-2026-10845","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10845","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T16:06:02.894Z","patch_url":"","primary_source":"","published":"2026-06-22T14:43:16.611Z"},{"affected":"8.5; 9.0","affected_versions_present":true,"cve_id":"CVE-2026-9072","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-9072","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-09T19:54:37.565Z","patch_url":"","primary_source":"","published":"2026-06-22T14:21:35.024Z"},{"affected":"8.5; 9.0","affected_versions_present":true,"cve_id":"CVE-2026-8858","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-8858","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-09T19:54:33.016Z","patch_url":"","primary_source":"","published":"2026-06-22T14:16:39.629Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"IBM Corporation"}}
