Denial of Service Vulnerability in IBM WebSphere Application Server
CVE-2026-14981
7.5HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 28 July 2026
What is CVE-2026-14981?
A vulnerability exists in IBM WebSphere Application Server affecting versions 9.0 and 8.5 along with Liberty versions 17.0.0.3 to 26.0.0.7. This issue arises due to the unbounded allocation of resources in the HTTP channel, potentially leading to service disruption. Adequate measures should be taken to mitigate these risks, including applying the latest patches and monitoring system performance for unusual behavior.
Affected Version(s)
WebSphere Application Server 9.0
WebSphere Application Server 8.5
WebSphere Application Server - Liberty 17.0.0.3 <= 26.0.0.7