SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-14446

CRITICAL · CVSS 9.8 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server versions 9.0 and 8.5 are susceptible to broken access control vulnerabilities within the administrative console, allowing unauthorized users to escalate privileges. This critical flaw, rated 9.8 on the CVSS scale, poses a significant risk of unauthorized access and potential system compromise. Organizations using these versions should prioritize immediate remediation to safeguard their environments.

CVE
CVE-2026-14446
Severity
CRITICAL
CVSS
9.8
EPSS
0.33%

Original NVD Description

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to broken access control/privilege escalation in the administrative console.

Related CVEs

Other vulnerabilities affecting the same vendor(s)