CVE-2018-1599: IBM API Connect

Medium severity, CVSS 5.4. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM API Connect 5.0.0.0 through 5.0.8.3 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 143744.

Affected products

  • IBM API Connect: from 5.0.0.0, up to and including 5.0.8.3; from 2018.1, up to and including 2018.3.4

Published 2018-08-22. Last modified 2026-06-17.