CVE-2019-4256: IBM API Connect

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

IBM API Connect 5.0.0.0 through 5.0.8.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 159944.

Affected products

  • IBM API Connect: from 5.0.0.0, up to and including 5.0.8.6

Published 2019-05-29. Last modified 2026-06-17.