CVE-2026-16186

Summary

IBM WebSphere Application Server 9.0, and 8.5 is affected by a reflected cross-site scripting vulnerability.

Affected Software

VendorProductVersion RangeStatus
IBMWebSphere Application Server9.0affected
IBMWebSphere Application Server8.5affected

Weaknesses

  • CWE-79: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

References