What is CVE-2026-14529?
CVE-2026-14529 indicates a Server-Side Request Forgery (SSRF) vulnerability in IBM WebSphere Application Server (traditional and Liberty versions) when the SIP container feature (sipServlet-1.1) is enabled. Organizations using IBM WebSphere environments with this feature activated should immediately apply the vendor-supplied security patches.
Azərbaycanca: CVE-2026-14529, IBM WebSphere Application Server (ənənəvi və Liberty versiyaları) üçün, SIP konteyner funksiyası aktiv olduqda Server-Side Request Forgery (SSRF) zəifliyini göstərir. Təşkilatlar, xüsusilə sipServlet-1.1 xüsusiyyətini istifadə edən IBM WebSphere mühitləri, dərhal təchizatçı tərəfindən təqdim edilən təhlükəsizlik yamalarını tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-918; shared vendor: IBM
FAQ2
Which product is affected by CVE-2026-14529?
This vulnerability affects both traditional and Liberty versions of IBM WebSphere Application Server.
What condition must be enabled to exploit CVE-2026-14529?
The SIP container feature, specifically the sipServlet-1.1 feature, must be enabled to exploit this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.