CVE-2026-8620Disclosure(ibm / websphere_application_server)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch ibm websphere_application_server systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggling in the Web Server Plug-ins through a specially crafted request.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-444

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • websphere_application_server

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • Peaked 2d ago at 3 mentions (2026-05-26); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
websphere_application_server

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-05-26: 3Mentions · 2026-05-28: 1Mentions · 2026-06-08: 1Patch / Workaround · 2026-06-08: 1Technical Details · 2026-05-28: 1Technical Details · 2026-06-08: 105-2605-2806-08
Signal classification3 categories
Disclosure
240.0%
General
240.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-05-263
Disclosure1General2
2026-05-281
Disclosure1
2026-06-081
Patch1
Full discourse5 posts
  • iototsecnews@iototsecnews
    Patch

    IBM WebSphere の脆弱性 CVE-2026-8633 が FIX:HTTP リクエストを介した RCE の可能性 https://iototsecnews.jp/2026/06/01/ibm-websphere-server-vulnerable-to-remote-code-execution-attack-via-crafted-request/ IBM WebSphere の問題は、オプション・コンポーネントである Web Server Plug-ins のコード生成制御の不備が原因となっています。脆弱性 CVE-2026-8633 は、Web サーバと App サーバ間でリクエストをルーティングするプラグイン処理における、外部からのデータに対する不十分な検証に起因します。 そのため、細工された HTTP リクエストを処理する際に、攻撃者に悪意のペイロード注入を許し、リモートからの任意のコード実行を招く恐れがあります。同時に、通信を操作される恐れのある、HTTP リクエスト・スマグリングの脆弱性 CVE-2026-8620 も修正されています。ご利用のチームは、ご注意ください。 #CVE20268633 #IBM #Vulnerability #WebSphere

    Post summary

    The article announces that IBM WebSphere CVE-2026-8633 has been fixed, providing technical details of the flaw and urging teams to apply the patch.

    01000161
    494 followersView on X
  • Mr.Rabbit@01ra66it
    Disclosure

    【IBM WebSphereのWeb Server Plug-insに未認証RCE】 IBM WebSphere Application ServerおよびWebSphere LibertyのWeb Server Plug-insに、深刻な脆弱性が確認されました。CVE-2026-8633 は、細工したリクエストにより未認証でリモートコード実行につながる可能性があり、CVSS 9.8のクリティカルと評価されています。 あわせて、HTTPリクエストスマグリングの CVE-2026-8620 も確認されています。WebSphereは基幹系や業務システムで長期運用されていることが多く、パッチ適用に停止調整が必要なため、対応が遅れやすい点がリスクです。 利用組織は、Web Server Plug-insの利用有無、外部公開経路、WAF・リバースプロキシログ、5xx急増、異常ヘッダを確認すべきです。日本の大企業・公共・金融・製造業では、棚卸し漏れのWebSphere環境を優先確認する必要があります。 #サイバーセキュリティ #IBM #WebSphere #RCE #CVE #脆弱性管理 #基幹システム #SOC https://www.security-next.com/184994

    Post summary

    IBM WebSphere’s Web Server Plug‑ins are affected by a critical unauthenticated RCE (CVE‑2026‑8633) and an HTTP request smuggling issue (CVE‑2026‑8620); the post provides vulnerability details but no PoC, exploit, patch, or evidence of active exploitation.

    00000492
    3.7K followersView on X
  • Matthias Knäpper@knaepp
    Disclosure

    PH71342:MULTIPLE VULNERABILITIES IN THE WEBSPHERE WEBSERVER PLUG-IN (CVE-2026-8633,CVE-2026-8620) https://tinyurl.com/24vretzo

    Post summary

    The text announces two new CVEs (CVE-2026-8633 and CVE-2026-8620) affecting the WebSphere Web Server plug‑in, but offers no further technical detail.

    0000075
    109 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-8620 IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vu… https://www.cve.org/CVERecord?id=CVE-2026-8620

    Post summary

    The post merely references CVE-2026-8620 for IBM WebSphere, providing no further details, proofs, or context.

    00000162
    57.5K followersView on X
  • Matthias Knäpper@knaepp
    General

    IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities when using when using Web Server Plug-ins (CVE-2026-8633, CVE-2026-8620) https://tinyurl.com/25uz5mx3

    Post summary

    The announcement states that IBM WebSphere Application Server and its Liberty variant are affected by two CVEs involving Web Server Plug-ins, but no further exploitation, patch, or technical details are provided.

    0000090
    109 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appibmwebsphere_application_server---
Appibmwebsphere_application_server---

Explore more