What is CVE-2026-16184?
This critical vulnerability allows a remote attacker to bypass authentication by sending a specially crafted request, posing a risk of unauthorized system access. It affects IBM WebSphere Application Server versions 9.0 and 8.5, so organizations using these versions must apply the official patch immediately.
Azərbaycanca: Bu kritik boşluq uzaqdan hücumçuya xüsusi hazırlanmış sorğu vasitəsilə autentifikasiyanı keçməyə imkan verdiyi üçün sistemə icazəsiz giriş riski yaradır. IBM WebSphere Application Server 9.0 və 8.5 versiyalarına təsir edir, ona görə də bu versiyaları istifadə edən təşkilatlar dərhal rəsmi yamağı tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-287; shared vendor: IBM
FAQ1
Which IBM product is affected by CVE-2026-16184?
This vulnerability affects IBM WebSphere Application Server versions 9.0 and 8.5.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.