CVE-2023-35890: IBM WebSphere Application Server

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM WebSphere Application Server 8.5 and 9.0 could provide weaker than expected security, caused by the improper encoding in a local configuration file. IBM X-Force ID: 258637.

Affected products

  • IBM WebSphere Application Server: version 8.5.5.23 only; version 9.0.5.15 only; version 9.0.5.16 only

Published 2023-07-07. Last modified 2026-06-17.