Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-9006

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) with the Ajax Proxy configured. This may allow an attacker to send unauthorized requests from the system, resulting in a security bypass or information disclosure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 12.6%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2026-9006


Contact Us

Shodan ® - All rights reserved