CVE-2025-12635
IBM WebSphere Application Server 8.5, 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.12 are affected by cross-site scripting due to improper validation of user-supplied input. An attacker could exploit this vulnerability by using a specially crafted URL to redirect the user to a malicious site.
Vendor
Product
CWE
Yayın Tarihi
2025-12-08 22:15:49
Güncelleme
2025-12-11 00:01:21
Source Identifier
psirt@us.ibm.com
KEV Date Added
-