CVE-2026-16435: IBM WebSphere Application Server vulnerability
Published Sep 8, 2026
·Updated
IBM WebSphere Application Server is affected by an authentication bypass vulnerability when using XD or Intelligent-Management features.
Affected Software
2 affected components
IBM WebSphere Application Server<=9.0
IBM WebSphere Application Server<=8.5
Event History
Sep 8, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Which deployments are exposed to this issue?
IBM WebSphere Application Server deployments using XD or Intelligent-Management features are affected.
2
What type of impact does this vulnerability enable?
The issue is an authentication bypass vulnerability, meaning it may allow authentication controls to be bypassed in affected deployments.