SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16187

MEDIUM · CVSS 6.5 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server versions 9.0 and 8.5 are vulnerable to a remote authentication bypass, enabling attackers to send crafted unauthenticated requests that could expose sensitive information. Organizations utilizing these versions should prioritize patching to mitigate the risk of unauthorized access and data leakage. This vulnerability is particularly relevant for security teams and system administrators managing WebSphere environments.

CVE
CVE-2026-16187
Severity
MEDIUM
CVSS
6.5
EPSS
0.25%

Original NVD Description

IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication and obtain sensitive information by sending a crafted unauthenticated request.