CVE-2026-10571
5.3
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.6 / Impact: 3.6
Source: NVD
Description
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by a denial of service caused by insecure deserialization. A low-privileged, administrative user could exploit this vulnerability to consume system resources when the restConnector-2.0 feature is enabled.
Affected (1)
Products: Ibm: Websphere Application Server
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 17.0.0.3 to 26.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Apple Macos | All versions |
Ibm Aix | All versions |
Ibm I | All versions |
Ibm Z/os | All versions |
Linux Linux Kernel | All versions |
Microsoft Windows | All versions |
References (1)
Timeline
No history available yet.