Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-36361


IBM App Connect Enterprise 13.0.1.0 through 13.0.4.2, and 12.0.1.0 through 12.0.12.17 could allow an authenticated user to perform unauthorized actions on customer defined resources due to missing authorization.


Published

2025-10-24T10:15:38.670

Last Modified

2025-10-28T14:27:33.283

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-862

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm app_connect_enterprise ≤ 12.0.12.17 Yes
Application ibm app_connect_enterprise ≤ 13.0.4.2 Yes

References