• People's Choice
      • Back
      • Consulting
          • Back
          • J2EE
              • Back
              • Websphere
          • Collabortation
              • Back
              • IBM Connections
          • OpenSource
          • Kontakt
      • build:skills
          • Back
          • Colaboration
              • Back
              • Admin
                  • Back
                  • W-A-S
                  • WPS
              • AppDev
                  • Back
                  • W-A-S
                  • WPS
                  • Web Experience Factory
          • Kontakt
          • Notes/ Verse
              • Back
              • Admin
              • Development
              • Interfaces
          • OpenSource
          • Literatur
          • Schedules
      • Schedule
      • Cloud
          • Back
          • Container
  • Jobs
      • Back
      • Offers
  • Über uns
  • Support
      • Back
      • FAQs
          • Back
          • Groupware
          • Traveler
          • WebSphere
          • Office
          • OpenSource
          • Other
      • Sonstiges
          • Back
          • Meldungen
          • IBM Infos
          • Lotus
          • WebSphere
          • Redbooks
          • Docker
          • Kubernetes
      • News
          • Back
          • Domino
          • Traveler
          • WebSphere
          • WebSphere Portal
          • Connections
          • Sametime
          • Docker
          • Kubernetes
      • Download
          • Back
          • WebSphere
          • Notes
          • Other
      • Discussion
  • Log in
Entwicklungsbuch

Authors: Created by IBM


IBM WebSphere Application Server is affected by a server-side request forgery vulnerability with the Ajax Proxy configured. CVEID:  CVE-2026-9006[1]
DESCRIPTION:  IBM WebSphere Application Server is vulnerable to server-side request forgery (SSRF) with the Ajax Proxy configured.This may allow an attacker to send unauthorized requests from the system, resulting in a security bypass or information disclosure.
CWE: 
CWE-918:Server-Side Request Forgery ...

Just published by IBM: Read more

  • Vorheriger Beitrag: IBM WebSphere Application Server is affected by a remote code execution vulnerability (CVE-2026-9319) Zurück
  • Nächster Beitrag: PH71556:IBM WebSphere Application Server is affected by server-side request forgery (CVE-2026-9006) Weiter

Updates

  • IBM WebSphere Application Server is affected by a remote code execution vulnerability (CVE-2026-9319)
  • Docker Content Trust: Retirement and Migration Guidance
  • IBM WebSphere Application Server is affected by server-side request forgery (CVE-2026-9006)
  • PH71556:IBM WebSphere Application Server is affected by server-side request forgery (CVE-2026-9006)
  • PH71631:IBM WebSphere Liberty is affected by multiple vulnerabilities (CVE-2026-8646, CVE-2026-9320, CVE-2026-9071)
  • PH71370:IBM WebSphere Application Server is affected by multiple vulnerabilities (CVE-2026-8646, CVE-2026-9320, CVE-2026-9071)
  • IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities when using the Web Server Plug-ins (CVE-2026-9072, CVE-2026-8858, CVE-2026-10852)
  • IBM HTTP Server latest cumulative security interim fix
  • PH71342,PH71376:MULTIPLE VULNERABILITIES IN THE WEBSPHERE WEBSERVER PLUG-IN
  • WebSphere Application Server traditional Version 9.0.5.28
© 1999 - 2026 IT Knäpper
  • Nutzungsbedingungen und Disclaimer
  • |
  • Unsere Philosophie
  • |
  • Datenschutz
  • |
  • WIR
Back to top