IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site scripting vulnerability in the administrative console login page.
Principal Product and Version(s)Affected Supporting Product and VersionAffected Supporting Product Security BulletinIBM Tivoli System Automation Application Manager 4.1WebSphere Application Server 8.5 Security Bulletin: IBM WebSphere Application Server is affected by multiple cross-site scripting vulnerabilities (CVE-2026-11594, CVE-2026-11707, CVE-2026-11383) https://www.ibm.com/support/pages/node/7277546 IBM Tivoli System Automation Application Manager 4.1WebSphere Application Server 9.0 Security Bulletin: IBM WebSphere Application Server is affected by multiple cross-site scripting vulnerabilities (CVE-2026-11594, CVE-2026-11707, CVE-2026-11383) https://www.ibm.com/support/pages/node/7277546