What is CVE-2026-14981?
A denial of service vulnerability exists in the HTTP channel of IBM WebSphere Application Server (traditional 8.5/9.0) and Liberty (17.0.0.3 through 26.0.0.7) due to unbounded resource allocation. Affected systems are at risk of service disruption, and immediate patching is required.
Azərbaycanca: Bu zəiflik IBM WebSphere Application Server (ənənəvi 8.5/9.0) və Liberty (17.0.0.3-26.0.0.7) versiyalarında HTTP kanalında limitsiz resurs ayrılması səbəbindən denial of service (DoS) vəziyyətinə yol aça bilər. Təsirə məruz qalan sistemlərdə xidmətin dayanması riski var, dərhal müvafiq yamaqlar tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: IBM
FAQ2
Which component of IBM WebSphere Application Server contains the CVE-2026-14981 vulnerability?
The vulnerability exists in the HTTP channel due to unbounded resource allocation.
Which WebSphere Application Server versions are affected by CVE-2026-14981?
IBM WebSphere Application Server traditional versions 8.5/9.0 and Liberty versions 17.0.0.3 through 26.0.0.7 are affected.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.