AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-10571

MEDIUM · CVSS 5.7 EPSS 0.56% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server - Liberty versions 17.0.0.3 through 26.0.0.8 are vulnerable to a denial of service due to insecure deserialization, which can be exploited by low-privileged administrative users when the restConnector-2.0 feature is enabled. Successful exploitation may lead to excessive consumption of system resources, potentially disrupting service availability. Organizations using affected versions should prioritize remediation to mitigate the risk of service interruptions.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-10571
Severity
MEDIUM
CVSS
5.7
EPSS
0.56%

Original NVD Description

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by a denial of service caused by insecure deserialization. A low-privileged, administrative user could exploit this vulnerability to consume system resources when the restConnector-2.0 feature is enabled.