IBM App Connect Enterprise 13.0.1.0 through 13.0.4.2, and 12.0.1.0 through 12.0.12.17 could allow an authenticated user to perform unauthorized actions on customer defined resources due to missing authorization.
2025-10-24T10:15:38.670
2025-10-28T14:27:33.283
Analyzed
CVSSv3.1: 6.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ibm | app_connect_enterprise | ≤ 12.0.12.17 | Yes |
| Application | ibm | app_connect_enterprise | ≤ 13.0.4.2 | Yes |