IBM WebSphere Application Server is vulnerable to server-side request forgery (SSRF) with the Ajax Proxy configured. This may allow an attacker to send unauthorized requests from the system, resulting in a security bypass or information disclosure. CWE: CWE-918: Server-Side Request Forgery (SSRF)