CVE-2026-9322: IBM PowerVM Novalink vulnerability
Published Jul 16, 2026
·Updated
IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to a denial of service via a crafted HTTP request.
Affected Software
2 affected components
IBM PowerVM Novalink<=2.2.02.2.12.2.1.1
IBM PowerVM Novalink<=2.3.02.3.0.12.3.12.3.2
Event History
Jul 16, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-9322?
CVE-2026-9322 has been assigned a risk score of 29, indicating a low severity level.
2
What vulnerability affects IBM WebSphere Application Server as noted in CVE-2026-9322?
CVE-2026-9322 indicates a denial of service vulnerability created by a crafted HTTP request.
3
How can I mitigate the risks associated with CVE-2026-9322?
To mitigate CVE-2026-9322, it is recommended to apply the latest security patches from IBM for WebSphere Application Server.
4
Are both IBM WebSphere Application Server and Liberty affected by CVE-2026-9322?
Yes, both IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by CVE-2026-9322.
5
When was CVE-2026-9322 published?
CVE-2026-9322 was published on July 16, 2026.