CVE-2025-14915: IBM WebSphere Application Server

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty is affected by privilege escalation. A privileged user could gain additional access to the application server.

Affected products

  • IBM WebSphere Application Server: from 17.0.0.3, before 26.0.0.4 (fixed in 26.0.0.4)

Published 2026-03-25. Last modified 2026-06-17.