CVE Tools

Websphere Application Server

529 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for Websphere Application Server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Websphere Application Server CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Websphere Application Server CVEs per month
MonthCVEs
2024-103
2024-112
2024-120
2025-010
2025-020
2025-030
2025-041
2025-051
2025-061
2025-071
2025-085
2025-091
2025-100
2025-110
2025-121
2026-010
2026-022
2026-034
2026-041
2026-054
2026-0620
2026-0723
2026-084
2026-0923

Severity

How the 529 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical5510%
  • High11121%
  • Medium31660%
  • Low479%

Latest CVEs

The 15 most recently published vulnerabilities affecting Websphere Application Server.

  1. CVE-2026-11711IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.5
  2. CVE-2026-11710IBM WebSphere Application Server is affected by an HTTP request smuggling vulnerability6.5
  3. CVE-2026-11545IBM WebSphere Application Server is affected by a privilege escalation3.7
  4. CVE-2026-11540IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities5.3
  5. CVE-2026-11539IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities5.3
  6. CVE-2026-11538IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities3.7
  7. CVE-2026-11537IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities4.3
  8. CVE-2026-15396IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.5
  9. CVE-2026-15412IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.5
  10. CVE-2026-15634IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.5
  11. CVE-2026-15887IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities5.4
  12. CVE-2026-16186IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities5.4
  13. CVE-2026-16185IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.4
  14. CVE-2026-16187IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities6.5
  15. CVE-2026-16188IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected by multiple vulnerabilities5.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store