CVE-2018-1532: IBM API Connect
Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.
IBM API Connect 5.0.0.0 through 5.0.8.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 142430.
Affected products
- IBM API Connect: from 5.0.0.0, up to and including 5.0.8.2
Published 2018-05-31. Last modified 2026-06-17.