GHSA-xrfh-q76x-p6f2HighCVSS 8.5

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user...

Published
June 1, 2026
Last Modified
June 1, 2026

🔗 CVE IDs covered (1)

📋 Description

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.

🔗 References (3)