CVE-2025-13333: IBM WebSphere Application Server

Medium severity, CVSS 4.9. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM WebSphere Application Server 9.0, and 8.5 could provide weaker than expected security during system administration of security settings.

Affected products

  • IBM WebSphere Application Server: version 8.5.0.0 only; version 9.0.0.0 only

Published 2026-02-17. Last modified 2026-06-17.