CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-14528

highCVSS 7.4covered by 4 sourcesfirst seen 2026-07-28
An attacker can exploit multiple vulnerabilities in IBM WebSphere Application Server Liberty and IBM WebSphere Application Server to execute arbitrary code, escalate privileges, conduct a Denial of Service attack, disclose information, manipulate files, perform a Cross-Site Scripting attack, and bypass security measures.

CSIRTS triage

What
Multiple vulnerabilities exist across various IBM WebSphere products.
Who is affected
Users of IBM WebSphere Products are affected.
Urgency
Remediation is not urgent as there are no known exploits for these vulnerabilities.
Action
Monitor for updates and apply patches when available.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-14528

Get an email if CVE-2026-14528 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (4)

External references

NVD record for CVE-2026-14528

CVE.org record

Embed the live status

CVE-2026-14528 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-14528 status](https://www.csirts.com/badge/CVE-2026-14528)](https://www.csirts.com/cve/CVE-2026-14528)