PT-2026-45544 · Ibm · Ibm Websphere Application Server

CVE-2026-9319

·

Published

2026-06-01

·

Updated

2026-06-23

CVSS v3.1

9.0

Critical

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server version 8.5 IBM WebSphere Application Server version 9.0
Description Remote code execution can occur due to the deserialization of untrusted data. This issue affects JAX-WS endpoints that utilize WS-Security.
Recommendations Update IBM WebSphere Application Server version 8.5 to a patched version. Update IBM WebSphere Application Server version 9.0 to a patched version.

Fix

RCE

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-9319

Affected Products

Ibm Websphere Application Server