CVE-2019-4437: IBM API Connect

Medium severity, CVSS 5.3. EPSS: 1.4% chance of exploitation in the next 30 days.

IBM API Connect 2018.1 through 2018.4.1.6 may inadvertently leak sensitive details about internal servers and network via API swagger. IBM X-force ID: 162947.

Affected products

  • IBM API Connect: from 2018.1.0, up to and including 2018.4.1.6

Published 2019-08-20. Last modified 2026-06-17.