Release Notes
Abstract
Changes included in below Fix Pack might negatively affect existing product function. Evaluate these APAR(s) for the potential impact in your environment. You can refer to the APAR(s) listed below for description of the problems as well as corrective actions.
Intentional behavior changes are not described here. Refer to the bottom of each fix pack download document for information about significant behavior changes.
Content
# 26.0.0.6
| APAR | Impact | Description |
|---|---|---|
High | NPE in LoggedOutCookieCacheHelper.getCloneableMessageDigest |
# 26.0.0.5
| APAR | Impact | Description |
|---|---|---|
High | NPE in LoggedOutCookieCacheHelper.getCloneableMessageDigest |
# 26.0.0.4
| APAR | Impact | Description |
|---|---|---|
High | NPE in LoggedOutCookieCacheHelper.getCloneableMessageDigest |
# 26.0.0.2
No regressions identified
# 26.0.0.1
No regressions identified
# 25.0.0.12
| APAR | Impact | Description |
|---|---|---|
Low | Unnecessary CredentialException FFDC logged |
# 25.0.0.11
| APAR | Impact | Description |
|---|---|---|
Low | Unnecessary CredentialException FFDC logged |
# 25.0.0.10
| APAR | Impact | Description |
|---|---|---|
Medium | Swagger UI fails to render when auth buttons are enabled | |
Low | Unnecessary CredentialException FFDC logged |
# 25.0.0.9
| APAR | Impact | Description |
|---|---|---|
Medium | Swagger UI fails to render when auth buttons are enabled | |
Medium | featureUtility fails with SHA512 MessageDigest not available | |
Low | Unnecessary CredentialException FFDC logged |
# 25.0.0.8
| APAR | Impact | Description |
|---|---|---|
Medium | Swagger UI fails to render when auth buttons are enabled |
# 25.0.0.7
| APAR | Impact | Description |
|---|---|---|
Medium | Swagger UI fails to render when auth buttons are enabled |
# 25.0.0.4
| APAR | Impact | Description |
|---|---|---|
Medium | UnsupportedOperationException generating LTPA keys on zOS with HWC/IBMJCECCA | |
Medium | Not able to config Liberty 25.0.0.3/25.0.0.4 + Java 21 with FIPS 140-2# |
# 25.0.0.3
| APAR | Impact | Description |
|---|---|---|
Medium | UnsupportedOperationException generating LTPA keys on zOS with HWC/IBMJCECCA | |
Medium | Not able to config Liberty 25.0.0.3/25.0.0.4 + Java 21 with FIPS 140-2# |
# 25.0.0.2
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled |
# 25.0.0.1
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled |
# 24.0.0.12
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled |
# 24.0.0.11
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled |
# 24.0.0.10
| APAR | Impact | Description |
|---|---|---|
Medium | Liberty may occasionally fail to start, throwing an IllegalArgumentException from java.base/java.util.concurrent.ThreadPoolExecutor.setMaximumPoolSize | |
Medium | SOAP trace cannot be disabled |
# 24.0.0.9
| APAR | Impact | Description |
|---|---|---|
Medium | Liberty may occasionally fail to start, throwing an IllegalArgumentException from java.base/java.util.concurrent.ThreadPoolExecutor.setMaximumPoolSize | |
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | SOAP trace cannot be disabled | |
Low | Webcontainer exceptions are emitted with FFDCS as of 24.0.0.9 with monitor-1.0 |
# 24.0.0.8
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration |
# 24.0.0.7
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | WS-AT fails when downstream server is non-Liberty | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration | |
Medium | JSF application reports '(TypeError: Missing hasKey)' |
# 24.0.0.6
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | WS-AT fails when downstream server is non-Liberty | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration | |
Medium | JSF application reports '(TypeError: Missing hasKey)' |
# 24.0.0.5
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | WS-AT fails when downstream server is non-Liberty | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration | |
Medium | JSF application reports '(TypeError: Missing hasKey)' |
# 24.0.0.4
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | WS-AT fails when downstream server is non-Liberty | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration | |
Medium | JSF application reports '(TypeError: Missing hasKey)' | |
Low | lassCastException: com.ibm.wsspi.sip.converge.ConvergedHttpSessionContextImpl incompatible with com.ibm.ws.webcontainer31.session.IHttpSessionContext31 |
# 24.0.0.3
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | WS-AT fails when downstream server is non-Liberty | |
Medium | SOAP trace cannot be disabled | |
Medium | JAXRS Client fails to use dynamic outbound configuration | |
Medium | JSF application reports '(TypeError: Missing hasKey)' |
# 24.0.0.2
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | SOAP trace cannot be disabled | |
Medium | JSF application reports '(TypeError: Missing hasKey)' | |
Low | Empty variable in include location may cause non-config files to get parsed by XMLConfigParser |
# 24.0.0.1
| APAR | Impact | Description |
|---|---|---|
Medium | JSF: Certain HTML Events (blur, mouseover, focus, etc) can trigger a button submission | |
Medium | SOAP trace cannot be disabled | |
Medium | JSF application reports '(TypeError: Missing hasKey)' | |
Low | Empty variable in include location may cause non-config files to get parsed by XMLConfigParser |
# 23.0.0.12
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled | |
Medium | bin/server command fails or hangs on non-linux unix systems | |
Low | Empty variable in include location may cause non-config files to get parsed by XMLConfigParser |
# 23.0.0.11
| APAR | Impact | Description |
|---|---|---|
Medium | SOAP trace cannot be disabled | |
Low | Empty variable in include location may cause non-config files to get parsed by XMLConfigParser |
# 23.0.0.10
| APAR | Impact | Description |
|---|---|---|
High | IBM WebSphere Application Server Liberty could provide weaker than expected security | |
Medium | SOAP trace cannot be disabled | |
Low | Empty variable in include location may cause non-config files to get parsed by XMLConfigParser | |
Low | Stale class content used after updating application archives |
# 23.0.0.9
| APAR | Impact | Description |
|---|---|---|
High | IBM WebSphere Application Server Liberty could provide weaker than expected security | |
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Medium | CWWKE0701E: bundle com.ibm.ws.security.token.ltpa failure at startup | |
Low | Stale class content used after updating application archives |
# 23.0.0.8
| APAR | Impact | Description |
|---|---|---|
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Low | Stale class content used after updating application archives |
# 23.0.0.7
| APAR | Impact | Description |
|---|---|---|
Medium | Memory leak with JAX-RS in org.jboss.resteasy.specimpl.ResteasyUriInfo.InitData | |
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Low | LTPA AUTHENTICATION FAILS ON JAVA 11 ON Z/OS WHEN USING THE IBMJCEHYBRID PROVIDER | |
Low | Stale class content used after updating application archives |
# 23.0.0.6
| APAR | Impact | Description |
|---|---|---|
Medium | Memory leak with JAX-RS in org.jboss.resteasy.specimpl.ResteasyUriInfo.InitData | |
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Low | LTPA AUTHENTICATION FAILS ON JAVA 11 ON Z/OS WHEN USING THE IBMJCEHYBRID PROVIDER | |
Low | Stale class content used after updating application archives |
# 23.0.0.5
| APAR | Impact | Description |
|---|---|---|
Medium | Memory leak with JAX-RS in org.jboss.resteasy.specimpl.ResteasyUriInfo.InitData | |
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Low | LTPA AUTHENTICATION FAILS ON JAVA 11 ON Z/OS WHEN USING THE IBMJCEHYBRID PROVIDER | |
Low | Stale class content used after updating application archives |
# 23.0.0.4
| APAR | Impact | Description |
|---|---|---|
Medium | Memory leak with JAX-RS in org.jboss.resteasy.specimpl.ResteasyUriInfo.InitData | |
Medium | 8.5 second delay closing websocket | |
Medium | SOAP trace cannot be disabled | |
Medium | UnsupportedOperationException thrown during authentication | |
Low | LTPA AUTHENTICATION FAILS ON JAVA 11 ON Z/OS WHEN USING THE IBMJCEHYBRID PROVIDER | |
Low | Stale class content used after updating application archives |
Was this topic helpful?
Document Information
Modified date:
07 August 2026
UID
ibm11127829