Unrated severityNVD Advisory· Published Aug 14, 2025· Updated Nov 3, 2025
IBM WebSphere Application Server Liberty denial of service
CVE-2025-36047
Description
IBM WebSphere Application Server Liberty 18.0.0.2 through 25.0.0.8 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory resources.
Affected products
2cpe:2.3:a:ibm:websphere_application_server:18.0.0.2:*:*:*:liberty:*:*:*+ 1 more
- cpe:2.3:a:ibm:websphere_application_server:18.0.0.2:*:*:*:liberty:*:*:*range: 18.0.0.2
- (no CPE)range: >=18.0.0.2 <=25.0.0.8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.ibm.com/support/pages/node/7242086mitrevendor-advisorypatch
News mentions
0No linked articles in our index yet.