CVE Watchtower


← Back to CVE List

CVE-2026-9330NVD

Description

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.
Severity Level
HIGH (8.5)
Published Date
01/06/2026
Last Modified
02/06/2026
Exploitation Status
????