CVE-2025-14917Disclosure(apple / aix)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty could provide weaker than expected security when administering security settings.

1.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-1393

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • aix
  • i
  • linux_kernel
  • macos

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-03-24); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Products
aixilinux_kernelmacoswebsphere_application_serverwindowsz\/os

1 version affected across 7 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-24: 1Mentions · 2026-03-25: 1Mentions · 2026-05-01: 1Technical Details · 2026-05-01: 103-2403-2505-01
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-241
General1
2026-03-251
Disclosure1
2026-05-011
Disclosure1
Full discourse3 posts
  • Matthias Knäpper@knaepp
    Disclosure

    PH70078:IBM WebSphere Application Server Liberty could provide weaker than expected security (CVE-2025-14917 CVSS 6.7) https://tinyurl.com/22aozekr

    Post summary

    Initial disclosure of CVE‑2025‑14917 affecting IBM WebSphere Application Server Liberty with a CVSS score of 6.7; no exploitation, patch, or PoC information is presented.

    00000964
    110 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-14917 IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty could provide weaker than expected security when adminis… https://www.cve.org/CVERecord?id=CVE-2025-14917

    Post summary

    The post announces CVE-2025-14917 affecting IBM WebSphere Application Server Liberty, noting potential weaker security, but provides no PoC, exploit, patch, or detailed technical data.

    00000130
    56.8K followersView on X
  • Matthias Knäpper@knaepp
    General

    IBM WebSphere Application Server Liberty could provide weaker than expected security (CVE-2025-14917) https://tinyurl.com/2cyftztb

    Post summary

    A brief statement cites CVE‑2025‑14917 with a vague claim of weaker security, but offers no technical, exploit, patch, or impact details.

    00000159
    108 followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---
OSibmaix---
OSibmi---
Appibmwebsphere_application_server---
OSibmz\/os---
OSlinuxlinux_kernel---
OSmicrosoftwindows---

Explore more