SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-14512

CRITICAL · CVSS 9.8 EPSS 0.57%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server versions 9.0 and 8.5 are vulnerable to pre-authentication unsafe deserialization, enabling remote attackers to bypass authentication or execute arbitrary code. This critical vulnerability, rated 9.8 on the CVSS scale, poses a significant risk to the integrity and security of applications running on these servers. Organizations using these versions should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-14512
Severity
CRITICAL
CVSS
9.8
EPSS
0.57%

Original NVD Description

IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentication unsafe deserialization which could allow a remote attacker to bypass authentication or execute arbitrary code.

Related CVEs

Other vulnerabilities affecting the same vendor(s)