SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-15887

MEDIUM · CVSS 5.4 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server versions 9.0 and 8.5 are vulnerable to a blind server-side request forgery (SSRF) issue when handling SOAP requests, which could allow an attacker to manipulate requests and potentially access internal resources. Organizations using these versions should prioritize remediation to mitigate the risk of unauthorized access and data exposure.

CVE
CVE-2026-15887
Severity
MEDIUM
CVSS
5.4
EPSS
0.18%

Original NVD Description

IBM WebSphere Application Server 9.0, and 8.5 is affected by blind server-side request forgery when processing SOAP requests.