Vulnerability Bulletins

IBM Security Bulletin: Several vulnerabilities affect Liberty for Java for IBM Bluemix (CVE-2016-2923, CVE-2016-2945, CVE-2016-0359)

   
Affected software IBM
 
There is an information disclosure vulnerability in IBM WebSphere Application Server Liberty for any users of the JAX-RS API. There is a potential for weaker than expected security when using the WebSphere Application Server Liberty profile API Discovery feature and Swagger documents. There is a potential HTTP response splitting vulnerability in IBM WebSphere Application Server.CVE(s): CVE-2016-2923, CVE-2016-2945, CVE-2016-0359Affected product(s) and affected version(s):This vulnerability

More info:

https://www.ibm.com/blogs/psirt/ibm-check-out-the-new-support-experience-beta-15/