Denial of Service Vulnerability in IBM WebSphere Application Server and WebServer Plug-in
CVE-2026-10852

5.9MEDIUM

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
22 June 2026

What is CVE-2026-10852?

IBM WebSphere Application Server and its WebServer Plug-in components are susceptible to a denial of service vulnerability. An attacker could exploit this weakness by sending specially crafted requests to the web server, potentially disrupting service availability. It is essential for users of affected IBM i versions to patch their systems to mitigate this risk.

Affected Version(s)

i 7.6

i 7.5

i 7.4

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.