CyberRota Analysis
AI-GeneratedIBM WebSphere Application Server - Liberty versions 17.0.0.3 through 26.0.0.8 are vulnerable to cross-site request forgery (CSRF), which could enable attackers to execute Server-Side Request Forgery (SSRF) attacks with elevated privileges if the collectiveController-1.0 feature is active. Organizations using these affected versions should prioritize patching to mitigate the risk of unauthorized access and potential data exposure. This vulnerability poses a significant threat to any entity relying on these specific versions of the application server.
Original NVD Description
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to perform SSRF attacks with elevated privileges when the collectiveController-1.0 feature is enabled.
Related CVEs
Other vulnerabilities affecting the same vendor(s)