PT-2026-45544 · Ibm · Ibm Websphere Application Server
CVE-2026-9319
·
Published
2026-06-01
·
Updated
2026-06-23
CVSS v3.1
9.0
Critical
| Vector | AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere Application Server version 8.5
IBM WebSphere Application Server version 9.0
Description
Remote code execution can occur due to the deserialization of untrusted data. This issue affects JAX-WS endpoints that utilize WS-Security.
Recommendations
Update IBM WebSphere Application Server version 8.5 to a patched version.
Update IBM WebSphere Application Server version 9.0 to a patched version.
Fix
RCE
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Websphere Application Server