IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to remote code execution caused by the bypass of security controls.
IBM WebSphere Application Server
Exploit
CVE-2026-9311
NVD
Refer to CVE-2026-9311 NVD advisory