IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM webMethods Integration is vulnerable to server-side request forgery (SSRF). This may allow an authenticatedĀ attacker to send unauthorized requests from the system, potentially leading to network enumeration orĀ facilitating other attacks.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7273550 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-05-26 17:16
Updated : 2026-07-24 11:10
NVD link : CVE-2025-14290
Mitre link : CVE-2025-14290
CVE.ORG link : CVE-2025-14290
JSON object : View
Products Affected
ibm
- webmethods_integration_server
CWE
CWE-918
Server-Side Request Forgery (SSRF)
