IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty could allow a remote attacker to conduct phishing… (CVE-2026-15412)
IBM WebSphere Application Server versions 9.0, 8.5, and Liberty contain an open redirect vulnerability that could allow a remote attacker to conduct phishing attacks by spoofing URLs. This vulnerability enables attackers to redirect users to malicious websites that appear trusted, potentially leading to sensitive information disclosure or further attacks.
AI Analysis
Technical Summary
CVE-2026-15412 describes an open redirect vulnerability in IBM WebSphere Application Server 9.0, 8.5, and Liberty. An attacker can craft a URL that appears legitimate but redirects victims to malicious sites, facilitating phishing attacks. The vulnerability arises from improper validation of URLs used in redirects, allowing attackers to spoof trusted URLs and deceive users.
Potential Impact
Successful exploitation could allow attackers to redirect users to malicious websites that appear trusted, potentially leading to disclosure of sensitive information or enabling additional attacks against victims. The CVSS 3.1 base score is 6.5 (medium severity), reflecting the network attack vector, low complexity, no privileges required, no user interaction, and impacts on confidentiality and integrity.
Mitigation Recommendations
No patch or official fix information is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, users should be cautious of suspicious URLs and consider implementing web application firewall rules or URL validation controls to mitigate open redirect risks.
IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty could allow a remote attacker to conduct phishing… (CVE-2026-15412)
Description
IBM WebSphere Application Server versions 9.0, 8.5, and Liberty contain an open redirect vulnerability that could allow a remote attacker to conduct phishing attacks by spoofing URLs. This vulnerability enables attackers to redirect users to malicious websites that appear trusted, potentially leading to sensitive information disclosure or further attacks.
CVSS v3.1
Score 6.5medium
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-15412 describes an open redirect vulnerability in IBM WebSphere Application Server 9.0, 8.5, and Liberty. An attacker can craft a URL that appears legitimate but redirects victims to malicious sites, facilitating phishing attacks. The vulnerability arises from improper validation of URLs used in redirects, allowing attackers to spoof trusted URLs and deceive users.
Potential Impact
Successful exploitation could allow attackers to redirect users to malicious websites that appear trusted, potentially leading to disclosure of sensitive information or enabling additional attacks against victims. The CVSS 3.1 base score is 6.5 (medium severity), reflecting the network attack vector, low complexity, no privileges required, no user interaction, and impacts on confidentiality and integrity.
Mitigation Recommendations
No patch or official fix information is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, users should be cautious of suspicious URLs and consider implementing web application firewall rules or URL validation controls to mitigate open redirect risks.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-v2m7-9wv8-5473
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-15412"]
- Database Specific Severity
- MODERATE
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6aa8a1c955bf5e2cf5f3e8f3
Added to database: 09/15/2026, 01:39:21 UTC
Last enriched: 09/15/2026, 01:59:59 UTC
Last updated: 09/15/2026, 03:01:22 UTC
Views: 2
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.